<div dir="ltr"><div class="gmail_default" style="font-family:verdana,sans-serif">Also there is a flight simulator easter egg.<br><br></div><div class="gmail_default" style="font-family:verdana,sans-serif">John<br></div></div><div class="gmail_extra"><br><div class="gmail_quote">On Mon, Oct 20, 2014 at 8:23 AM, Tom Scavo <span dir="ltr">&lt;<a href="mailto:trscavo@gmail.com" target="_blank">trscavo@gmail.com</a>&gt;</span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><span class="">On Mon, Oct 20, 2014 at 5:28 AM, Peter Schober<br>
&lt;<a href="mailto:peter.schober@univie.ac.at">peter.schober@univie.ac.at</a>&gt; wrote:<br>
&gt; * Rod Widdowson &lt;<a href="mailto:rdw@steadingsoftware.com">rdw@steadingsoftware.com</a>&gt; [2014-10-20 11:25]:<br>
&gt;&gt; &gt; I&#39;d be curious why it&#39;s that large.<br>
&gt;&gt;<br>
&gt;&gt; Me too.  It must take a lot of imagination to make the metadata that big...<br>
&gt;<br>
&gt; Not even an IDP descriptor plus an Attribute Authority plus an SP<br>
&gt; descriptor all in the same entity, each with seperate decryption and<br>
&gt; signing keys, would do that!<br>
<br>
</span>It&#39;s been awhile since I looked at AD FS metadata but it is anything<br>
but straightforward. As I recall, there are numerous custom role<br>
descriptors.<br>
<span class="HOEnZb"><font color="#888888"><br>
Tom<br>
</font></span><div class="HOEnZb"><div class="h5">--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</div></div></blockquote></div><br></div>