<saml2:Assertion xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:xsd="http://www.w3.org/2001/XMLSchema" ID="_d3131fba-0043-461f-8ec1-a9341934fdd0" IssueInstant="2021-12-15T10:38:33.767Z" Version="2.0">
    <saml2:Issuer Format="urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified">urn:elga:ets</saml2:Issuer>
    <ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:SignedInfo>
            <ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" />
            <ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256" />
            <ds:Reference URI="#_d3131fba-0043-461f-8ec1-a9341934fdd0">
                <ds:Transforms>
                    <ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature" />
                    <ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#">
                        <ec:InclusiveNamespaces xmlns:ec="http://www.w3.org/2001/10/xml-exc-c14n#" PrefixList="xsd" />
                    </ds:Transform>
                </ds:Transforms>
                <ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256" />
                <ds:DigestValue>48LjO7M++g0YjDOSKk+YOghI+eEGlWDbqwgEeuZ2q9c=</ds:DigestValue>
            </ds:Reference>
        </ds:SignedInfo>
        <ds:SignatureValue>prPOrmE0WwH0+NqqODO/CMOAllS6siJIgcZbbxQsSczILKIMGaFTP0RKvXDZh7+GKqmQEPVsER24/AOYuEwSpVBjIKU3SHkH8WADEZ/OHlXPux/rM5QAwGUVWWQSzZ6CvJJQF8Siv7ErCp0r55UW0wVfy/KlP53ELY9roKRbu47iZmsn2ylK26CcsXCpDYIbRrTmwMUyhUd2/lBW9kIdTL1EflALob3Pw7zP6UIz4FGrNTGcFIrgpBPSTyfmmBVNPTLxjAbW8q0qbv8T2F1/52GaIxP/Wzyb4Dt6bK5a8ZpTku7WQ6Jfp6AXgC65d0XnprVJeI/Celvb+lRTaa5g1Q==</ds:SignatureValue>
        <ds:KeyInfo>
            <ds:X509Data>
                <ds:X509Certificate>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</ds:X509Certificate>
            </ds:X509Data>
        </ds:KeyInfo>
    </ds:Signature>
    <saml2:Subject>
        <saml2:NameID Format="urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified">GH:P5yg66xRAYvwIZ6rh9jUGmP2++c=</saml2:NameID>
        <saml2:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:sender-vouches">
            <saml2:SubjectConfirmationData />
        </saml2:SubjectConfirmation>
    </saml2:Subject>
    <saml2:Conditions NotBefore="2021-12-15T10:38:33.767Z" NotOnOrAfter="2021-12-15T10:58:33.767Z">
        <saml2:ProxyRestriction Count="2" />
        <saml2:AudienceRestriction>
            <saml2:Audience>https://elga-online.at/ETS</saml2:Audience>
            <saml2:Audience>https://elga-online.at/KBS</saml2:Audience>
            <saml2:Audience>https://elga-online.at/ZPI</saml2:Audience>
        </saml2:AudienceRestriction>
    </saml2:Conditions>
    <saml2:AuthnStatement AuthnInstant="2021-12-15T10:38:33.767Z">
        <saml2:AuthnContext>
            <saml2:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:PreviousSession</saml2:AuthnContextClassRef>
        </saml2:AuthnContext>
    </saml2:AuthnStatement>
    <saml2:AttributeStatement>
        <saml2:Attribute FriendlyName="BeS Purpose Of Use" Name="urn:oasis:names:tc:xspa:1.0:subject:purposeofuse" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <saml2:AttributeValue xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xsd:string">E-HEALTH-CONTEXT^103</saml2:AttributeValue>
        </saml2:Attribute>
        <saml2:Attribute FriendlyName="AC Purpose" Name="urn:oasis:names:tc:xacml:2.0:action:purpose" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <saml2:AttributeValue xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xsd:string">MANDATE</saml2:AttributeValue>
        </saml2:Attribute>
        <saml2:Attribute FriendlyName="ELGA Rolle" Name="urn:oasis:names:tc:xacml:2.0:subject:role" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <saml2:AttributeValue xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xsd:anyType">
                <Role xmlns="urn:hl7-org:v3" code="611" codeSystem="1.2.40.0.34.5.158" codeSystemName="ELGA Funktionsrollen" displayName="bevollmächtigter ELGA-Teilnehmer" />
            </saml2:AttributeValue>
        </saml2:Attribute>
        <saml2:Attribute FriendlyName="XSPA Subject" Name="urn:oasis:names:tc:xacml:1.0:subject:subject-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <saml2:AttributeValue xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xsd:string">ELGATest pineIT</saml2:AttributeValue>
        </saml2:Attribute>
        <saml2:Attribute FriendlyName="XSPA Patient ID" Name="urn:oasis:names:tc:xacml:1.0:resource:resource-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <saml2:AttributeValue xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xsd:string">GH:oJoUi+luBdbhCkipnoZ7/1/Zrmw=^^^&amp;1.2.40.0.10.2.1.1.149&amp;ISO</saml2:AttributeValue>
        </saml2:Attribute>
        <saml2:Attribute FriendlyName="XSPA Organization ID" Name="urn:oasis:names:tc:xspa:1.0:subject:organization-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <saml2:AttributeValue xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xsd:anyURI">urn:oid:1.2.40.0.10.999.1</saml2:AttributeValue>
        </saml2:Attribute>
        <saml2:Attribute FriendlyName="Permissions" Name="urn:elga:bes:permission" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <saml2:AttributeValue xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xsd:string">urn:elga:bes:2019:permission:103:read:noContact</saml2:AttributeValue>
        </saml2:Attribute>
    </saml2:AttributeStatement>
</saml2:Assertion>