<?xml version="1.0" encoding="utf-8"?>
<saml:Assertion ID="i1a8cbc7ffe5e97f8c177792eefe1cd4b21109d93" IssueInstant="2007-02-15T19:21:59.000Z" Version="2.0"
  xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:xsd="http://www.w3.org/2001/XMLSchema"
  xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
  xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:assertion http://docs.oasis-open.org/security/saml/v2.0/saml-schema-assertion-2.0.xsd
  http://www.w3.org/2000/09/xmldsig# http://www.w3.org/TR/2002/REC-xmldsig-core-20020212/xmldsig-core-schema.xsd
   urn:oasis:names:tc:SAML:2.0:profiles:attribute:X500 http://docs.oasis-open.org/security/saml/v2.0/saml-schema-x500-2.0.xsd">
  <saml:Issuer>https://saml20.caf.eauth.enspier.net:443/IDP</saml:Issuer>
  <ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
    <ds:SignedInfo>
      <ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" />
      <ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1" />
      <ds:Reference URI="#i1a8cbc7ffe5e97f8c177792eefe1cd4b21109d93">
        <ds:Transforms>
          <ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature" />
          <ds:Transform Algorithm="http://www.w3.org/2001/10/xml-excc14n#">
            <ec:InclusiveNamespaces xmlns:ec="http://www.w3.org/2001/10/xmlexc-c14n#" PrefixList="xsd" />
          </ds:Transform>
        </ds:Transforms>
        <ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1" />
        <ds:DigestValue>xy+yrYU6widLMZuHBJ4lSiVfDng=</ds:DigestValue>
      </ds:Reference>
    </ds:SignedInfo>
    <!-- 
      !Please note that I've removed the '....' from the elements <ds:SignatureValue> and <ds:X509Certificate> 
      to make it valid according to the XML Schema definitions  
    -->
    <ds:SignatureValue>RuYlMNva0n5cHyUBy3l4h7MLGffm71gxRbT58/1nyDB53osoKgTdMf EcwGlJp4U5kmogPa7Q1SbQ</ds:SignatureValue>
    <ds:KeyInfo>
      <ds:X509Data>
        <ds:X509Certificate>
          UEvocATzqEPnAtIkRCltvFCHbOG9ctZiS1QQIGcSR0te60PfAgMBAA GjgckwgcYwCQYDVR0TBAIw
        </ds:X509Certificate>
      </ds:X509Data>
    </ds:KeyInfo>
  </ds:Signature>
  <saml:Subject>
    <saml:NameID Format="urn:oasis:names:tc:SAML:2.0:nameidformat:persistent"
      NameQualifier="https://saml20.caf.eauth.enspier.net:443/ID"
      SPNameQualifier="https://saml20.caf.eauth.enspier.net:443/SP">
      a9c16e8616880860f837a58dc12b490376d8bffa
    </saml:NameID>
    <saml:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer">
      <saml:SubjectConfirmationData InResponseTo="s2f2e4125ad08136b30ae49893a1ae86c154f451e4"
        NotOnOrAfter="2007-02-15T19:31:59.000Z" Recipient="https://sp.relyingparty1.com:443/amserver/Consumer/metaAlias/sp" />
    </saml:SubjectConfirmation>
  </saml:Subject>
  <saml:Conditions>
    <saml:AudienceRestriction>
      <saml:Audience>https://saml20.caf.eauth.enspier.net:443/SP</saml:Audience>
    </saml:AudienceRestriction>
  </saml:Conditions>
  <saml:AuthnStatement AuthnInstant="2007-02-15T19:21:55.000Z" SessionIndex="843AE7"
    SessionNotOnOrAfter="2007-02-16T05:21:55.000Z">
    <saml:AuthnContext>
      <saml:AuthnContextClassRef>
        urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport
      </saml:AuthnContextClassRef>
      <saml:AuthnContextDeclRef>
        https://saml20-07.caf.eauth.enspier.net:443/tfs/SAML20PasswordProtectedTransportStatement.xml
      </saml:AuthnContextDeclRef>
    </saml:AuthnContext>
  </saml:AuthnStatement>
  <saml:AttributeStatement>
    <saml:Attribute Name="us:gov:e-authentication:basic:assuranceLevel"
      NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
      <saml:AttributeValue xsi:type="xsd:string">2</saml:AttributeValue>
    </saml:Attribute>
    <saml:Attribute Name="us:gov:e-authentication:2007:cn" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
      <saml:AttributeValue xsi:type="xsd:string">2</saml:AttributeValue>
    </saml:Attribute>
    <saml:Attribute Name="us:gov:e-authentication:2007:cn" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
      <saml:AttributeValue xsi:type="xsd:string">Alice Adams</saml:AttributeValue>
    </saml:Attribute>
    <saml:Attribute Name="us:gov:e-authentication:2007:specVer"
      NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
      <saml:AttributeValue xsi:type="xsd:string">2.0</saml:AttributeValue>
    </saml:Attribute>
    <saml:Attribute Name="us:gov:e-authentication:2007:PSSN" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
      <saml:AttributeValue xsi:type="xsd:string">5681</saml:AttributeValue>
    </saml:Attribute>
  </saml:AttributeStatement>
</saml:Assertion>
