<env:Envelope xmlns:env="http://www.w3.org/2003/05/soap-envelope">
    <env:Header xmlns:addressing="http://www.w3.org/2005/08/addressing">
        <addressing:Action env:mustUnderstand="1"
            >http://docs.oasis-open.org/ws-sx/ws-trust/200512/RSTR/IssueFinal</addressing:Action>
        <addressing:MessageID>uuid:0FB5D2CA-0C79-490E-89B2-21D1CBF0E7DE</addressing:MessageID>
        <addressing:RelatesTo>Sue_msgID:c5ae4eaf-1bd3-4e8e-b330-8809796807d0</addressing:RelatesTo>
    </env:Header>
    <env:Body>
        <wst:RequestSecurityTokenResponseCollection
            xmlns:wst="http://docs.oasis-open.org/ws-sx/ws-trust/200512">
            <wst:RequestSecurityTokenResponse>
                <wst:TokenType>urn:elga:bes:2019:Context:assertion</wst:TokenType>
                <wst:RequestedSecurityToken>
                    <saml2:Assertion xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion"
                        xmlns:xsd="http://www.w3.org/2001/XMLSchema"
                        ID="_0d45865a-0c69-49c7-8d01-ec42fe15dcaa"
                        IssueInstant="2020-06-30T08:36:34.745Z" Version="2.0">
                        <saml2:Issuer Format="urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified"
                            >urn:elga:ets</saml2:Issuer>
                        <ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
                            <ds:SignedInfo>
                                <ds:CanonicalizationMethod
                                    Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
                                <ds:SignatureMethod
                                    Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
                                <ds:Reference URI="#_0d45865a-0c69-49c7-8d01-ec42fe15dcaa">
                                    <ds:Transforms>
                                        <ds:Transform
                                            Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
                                        <ds:Transform
                                            Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#">
                                            <ec:InclusiveNamespaces
                                                xmlns:ec="http://www.w3.org/2001/10/xml-exc-c14n#"
                                                PrefixList="xsd"/>
                                        </ds:Transform>
                                    </ds:Transforms>
                                    <ds:DigestMethod
                                        Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
                                    <ds:DigestValue>G8sFdwRijKgY+oWYF6GmmvxBjv/1QxPayOD+HCFHY50=</ds:DigestValue>
                                </ds:Reference>
                            </ds:SignedInfo>
                            <ds:SignatureValue>KpCXBNtljVMZeoTEmBqV7nqqzqzaDDDToPUHPB1pjtOK/V7tmOsOwzY8Ui1Tj6JRmZeDId6bwBPOoEfS69NmZ2sQxHjtaypcfenTem3WUeOR55ndH7SxYT+pc8r4ojySQZs5P3tPheEmJ/YLxjqvZRXcGP8iTslRL6KjPxlMt1IpaQ81xE/ErFRHyahZz3S3DpQ1JBYbfqVhKc/6IfkMlLPzXTP+5Xm4lC3aQYoOfp34HvwoCvdtmCerjWdB4WnqPZSnHmET2eNCSoV8qyd7/XOvmH3udx8Y3/voJkzTwGPSKOhhVlkOkkDXAmhTh8hf4MTgKVi4Xzj4dqGB3kRT6g==</ds:SignatureValue>
                            <ds:KeyInfo>
                                <ds:X509Data>
                                    <ds:X509Certificate>MIIEMzCCAxugAwIBAgIIXazOdf5ItY4wDQYJKoZIhvcNAQELBQAwFjEUMBIGA1UEAwwLRUxHQS1JTlRDQTEwHhcNMjAwNTEwMTE1MzExWhcNMjIwNTEwMTE1MzExWjBCMRwwGgYDVQQDDBNhY3MuZWxnYS1zcGlyaXQuaW50MRUwEwYDVQQKDAxUaWFuaS1TcGlyaXQxCzAJBgNVBAYTAkFUMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5RYjoSxZdKoAOo4Q+4zojVrBr3t55E25L4u9VLgxm7evS6lhI1zFa03elnVCVPZsEbz8zEuqBjDLpU4fYvDdyw6u8U5Sw9q9jtiUt9JBkgGO9lxppRRfARqbbJKvLlzpQa0IARYeh4sBj5fNc2ohUjifOATPkhW/QzTiCnMDZh9U3tYeLUORX/b3Lgm8wZ5/oy6MUtPnXefTRMVmFtP5YAevhsQqpqAyMcqmodtRDiNDa5mHReVH/ftKGGWeX6MeO7b6RTy0Znji/TH7Y7GIjqwh4ISRgxJ/B9ZzCUApoFD2MceGCvZzIYQ2St8WAA0UsxDFA5EuPS7G18LHvcRLyQIDAQABo4IBVzCCAVMwDAYDVR0TAQH/BAIwADAfBgNVHSMEGDAWgBRpnVuezwNOHziBG5P0dFmd5NVI5zBTBggrBgEFBQcBAQRHMEUwQwYIKwYBBQUHMAGGN2h0dHA6Ly9iZXMudGlhbmktc3Bpcml0LmNvbS9lamJjYS9wdWJsaWN3ZWIvc3RhdHVzL29jc3AwgYEGA1UdEQR6MHiCF2Fjcy5lbGdhLWRldi1zcGlyaXQuaW50ghVhY3Mua29sbGFiLXNwaXJpdC5pbnSCFmFjcy5rb2xsYWIxLXNwaXJpdC5pbnSCFmFjcy5rb2xsYWIyLXNwaXJpdC5pbnSCFmFjcy5rb2xsYWIzLXNwaXJpdC5pbnQwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMB0GA1UdDgQWBBQS4G6YdEJcRn3+26BTwmyhrrh5EjALBgNVHQ8EBAMCBeAwDQYJKoZIhvcNAQELBQADggEBADr7WLGpG1nCcSNfA/zdlSQvuUVuzLgT3DDdZ1Yjj/tZkG6hAO+rIwRAroz4sNbNxzrksDghhvhZe2GsboJaiJlu81uxH/Y7mi3fh3CTYkTjW4dxS1i9D9uXXLTKuuP1S4XBVuK/FF47Y5MXxAY6IGc/Hoy/cxHxRAWpGskPIkx2weQ0g/UkmWwG41QafEuwyZcaGIxI7ZJkvt7Zw96U01AlnkQodq4dG0tsG+YRuHb+4iRCOjo1gQPucVS6ss+bbRBJ+ikO8fT9cV6yXAKoBi8yfw4HBGDTSbJdWs7F0bRKV1IJDR6xadByG9skpSOhuEe4VXuqNAkvdxxExLxN5/Q=</ds:X509Certificate>
                                </ds:X509Data>
                            </ds:KeyInfo>
                        </ds:Signature>
                        <saml2:Subject>
                            <saml2:NameID
                                Format="urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified"
                                >1.2.40.0.34.3.1.1146^null@Öffentlicher Gesundheitsdienst
                                Wien</saml2:NameID>
                            <saml2:SubjectConfirmation
                                Method="urn:oasis:names:tc:SAML:2.0:cm:bearer">
                                <saml2:SubjectConfirmationData/>
                            </saml2:SubjectConfirmation>
                        </saml2:Subject>
                        <saml2:Conditions NotBefore="2020-06-30T08:36:34.745Z"
                            NotOnOrAfter="2020-06-30T12:36:34.745Z">
                            <saml2:ProxyRestriction Count="1"/>
                            <saml2:AudienceRestriction>
                                <saml2:Audience>https://elga-online.at/ETS</saml2:Audience>
                                <saml2:Audience>https://elga-online.at/KBS</saml2:Audience>
                                <saml2:Audience>https://elga-online.at/ZPI</saml2:Audience>
                            </saml2:AudienceRestriction>
                        </saml2:Conditions>
                        <saml2:AuthnStatement AuthnInstant="2020-06-30T08:36:34.744Z">
                            <saml2:AuthnContext>
                                <saml2:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:PreviousSession</saml2:AuthnContextClassRef>
                            </saml2:AuthnContext>
                        </saml2:AuthnStatement>
                        <saml2:AttributeStatement>
                            <saml2:Attribute FriendlyName="BeS Purpose Of Use"
                                Name="urn:oasis:names:tc:xspa:1.0:subject:purposeofuse"
                                NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
                                <saml2:AttributeValue
                                    xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                    xsi:type="xsd:string"
                                    >E-HEALTH-CONTEXT^103</saml2:AttributeValue>
                            </saml2:Attribute>
                            <saml2:Attribute FriendlyName="AC Purpose"
                                Name="urn:oasis:names:tc:xacml:2.0:action:purpose"
                                NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
                                <saml2:AttributeValue
                                    xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                    xsi:type="xsd:string">IDA_PVP_HCP</saml2:AttributeValue>
                            </saml2:Attribute>
                            <saml2:Attribute FriendlyName="ELGA Rolle"
                                Name="urn:oasis:names:tc:xacml:2.0:subject:role"
                                NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
                                <saml2:AttributeValue
                                    xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                    xsi:type="xsd:anyType">
                                    <Role xmlns="urn:hl7-org:v3" code="716"
                                        codeSystem="1.2.40.0.34.5.3"
                                        codeSystemName="ELGA GDA Aggregatrollen"
                                        displayName="Amtsarzt"/>
                                </saml2:AttributeValue>
                            </saml2:Attribute>
                            <saml2:Attribute FriendlyName="XSPA Subject"
                                Name="urn:oasis:names:tc:xacml:1.0:subject:subject-id"
                                NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
                                <saml2:AttributeValue
                                    xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                    xsi:type="xsd:string">FamName</saml2:AttributeValue>
                            </saml2:Attribute>
                            <saml2:Attribute FriendlyName="Local Organisation ID"
                                Name="urn:elga:bes:2013:local-organisation-id"
                                NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
                                <saml2:AttributeValue
                                    xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                    xsi:type="xsd:anyURI">AT:VKZ:L9</saml2:AttributeValue>
                            </saml2:Attribute>
                            <saml2:Attribute FriendlyName="XSPA Organization ID"
                                Name="urn:oasis:names:tc:xspa:1.0:subject:organization-id"
                                NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
                                <saml2:AttributeValue
                                    xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                    xsi:type="xsd:anyURI"
                                    >urn:oid:1.2.40.0.34.3.1.1146</saml2:AttributeValue>
                            </saml2:Attribute>
                            <saml2:Attribute FriendlyName="Permissions"
                                Name="urn:elga:bes:permission"
                                NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
                                <saml2:AttributeValue
                                    xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                    xsi:type="xsd:string"
                                    >urn:elga:bes:2019:permission:e-Impfpass:read:contact</saml2:AttributeValue>
                                <saml2:AttributeValue
                                    xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                    xsi:type="xsd:string"
                                    >urn:elga:bes:2019:permission:e-Impfpass:write:contact</saml2:AttributeValue>
                            </saml2:Attribute>
                        </saml2:AttributeStatement>
                    </saml2:Assertion>
                </wst:RequestedSecurityToken>
            </wst:RequestSecurityTokenResponse>
        </wst:RequestSecurityTokenResponseCollection>
    </env:Body>
</env:Envelope>
