<?xml version="1.0" encoding="UTF-8"?>
<soapenv:Envelope xmlns:soapenv="http://schemas.xmlsoap.org/soap/envelope/">
	<soapenv:Header>
		<wsse:Security xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd" soapenv:mustUnderstand="1">
			<wsse:BinarySecurityToken xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd" EncodingType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Base64Binary" ValueType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-x509-token-profile-1.0#X509v3" wsu:Id="CertId-EF96226E1FFB59978113559249691104">{Base64_authentication_cert}</wsse:BinarySecurityToken>
			<ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#" Id="Signature-5">
				<ds:SignedInfo>
					<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
					<ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
					<ds:Reference URI="#Timestamp-4">
						<ds:Transforms>
							<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
						</ds:Transforms>
						<ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
						<ds:DigestValue>YLPEyFixXY02Y8PVYA52eJLpeI0=</ds:DigestValue>
					</ds:Reference>
					<ds:Reference URI="#CertId-EF96226E1FFB59978113559249691104">
						<ds:Transforms>
							<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
						</ds:Transforms>
						<ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
						<ds:DigestValue>SN8+fFNZX3tERFuCBq9ABWfaDAA=</ds:DigestValue>
					</ds:Reference>
					<ds:Reference URI="#id-6">
						<ds:Transforms>
							<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
						</ds:Transforms>
						<ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
						<ds:DigestValue>0gvPHe59e2rNdlVNQ5iKf7L1mMU=</ds:DigestValue>
					</ds:Reference>
				</ds:SignedInfo>
				<ds:SignatureValue>
VzSDDZtYujZwKjiYeVoQeVo5XfR8hPCRe6tgnMj5YkCzRE51Bzf3nvj12I3/gHleta6/nQgvewln
1ZNRfvw91uqBkNyxmtxd67hePQfLDCJ4MIfN74z1B8XI0pb6dyHjzRNwYPKd9xvko+Lkm9T4XkQi
LmXN53MXYCleAfPSQOk=
</ds:SignatureValue>
				<ds:KeyInfo Id="KeyId-EF96226E1FFB59978113559249691105">
					<wsse:SecurityTokenReference xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd" wsu:Id="STRId-EF96226E1FFB59978113559249691106">
						<wsse:Reference URI="#CertId-EF96226E1FFB59978113559249691104" ValueType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-x509-token-profile-1.0#X509v3"/>
					</wsse:SecurityTokenReference>
				</ds:KeyInfo>
			</ds:Signature>
			<wsu:Timestamp xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd" wsu:Id="Timestamp-4">
				<wsu:Created>2012-12-19T13:49:29.110Z</wsu:Created>
				<wsu:Expires>2012-12-19T13:50:29.110Z</wsu:Expires>
			</wsu:Timestamp>
		</wsse:Security>
	</soapenv:Header>
	<soapenv:Body xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd" wsu:Id="id-6">
		<Request xmlns="urn:oasis:names:tc:SAML:1.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:1.0:assertion" xmlns:samlp="urn:oasis:names:tc:SAML:1.0:protocol" IssueInstant="2012-12-19T13:49:27.128Z" MajorVersion="1" MinorVersion="1" RequestID="_22c7e6de64fdaadf767214eefdaaca5f">
			<ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
				<ds:SignedInfo>
					<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
					<ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
					<ds:Reference URI="#_22c7e6de64fdaadf767214eefdaaca5f">
						<ds:Transforms>
							<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
							<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#">
								<ec:InclusiveNamespaces xmlns:ec="http://www.w3.org/2001/10/xml-exc-c14n#" PrefixList="code ds kind rw saml samlp typens #default"/>
							</ds:Transform>
						</ds:Transforms>
						<ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
						<ds:DigestValue>GrTkX+caPlzuoBY2L3qAbrQ4YF8=</ds:DigestValue>
					</ds:Reference>
				</ds:SignedInfo>
				<ds:SignatureValue>
WCauCrlJTGWM6ra6Qg1/+ubxSLXX65Zu626Oq0quxfKY8MbbfGApcY1rrVaKvDI21vSJEspuaILc
WPAcoEySUg/egjpIp/OebxFjlG9z4o7QsO9XFtJwJedqkf4Ewnk2h1rRa76W7Dr8Lz1Qd3djV3Sg
j7ICP27Nq0ValClr3kU=
</ds:SignatureValue>
				<ds:KeyInfo>
					<ds:X509Data>
						<ds:X509Certificate>
{Base64_hok_cert}
</ds:X509Certificate>
					</ds:X509Data>
				</ds:KeyInfo>
			</ds:Signature>
			<AttributeQuery>
				<Subject xmlns="urn:oasis:names:tc:SAML:1.0:assertion">
					<NameIdentifier Format="urn:oasis:names:tc:SAML:1.1:nameid-format:X509SubjectName" NameQualifier="O=Federal Government, OU=eHealth-platform Belgium, C=BE, CN=TRAIL eHealth CA TEST">C=BE, SERIALNUMBER={SSIN_dentist}, SURNAME={surname}, GIVENNAME={givenname}, CN={givenname surname}</NameIdentifier>
					<SubjectConfirmation>
						<ConfirmationMethod>urn:oasis:names:tc:SAML:1.0:cm:holder-of-key</ConfirmationMethod>
						<SubjectConfirmationData>
							<Assertion AssertionID="_e16aea9857cc77a8e91e0b64aa685def" IssueInstant="2012-12-19T13:49:27.128Z" Issuer="C=BE, SERIALNUMBER={SSIN_dentist}, SURNAME={surname}, GIVENNAME={givenname}, CN={givenname surname}" MajorVersion="1" MinorVersion="1">
								<Conditions NotBefore="2012-12-19T13:49:27.128Z" NotOnOrAfter="2012-12-19T14:49:27.128Z"/>
								<AttributeStatement>
									<Subject>
										<NameIdentifier Format="urn:oasis:names:tc:SAML:1.1:nameid-format:X509SubjectName" NameQualifier="O=Federal Government, OU=eHealth-platform Belgium, C=BE, CN=TRAIL eHealth CA TEST">C=BE, SERIALNUMBER={SSIN_dentist}, SURNAME={surname}, GIVENNAME={givenname}, CN={givenname surname}</NameIdentifier>
									</Subject>
									<Attribute AttributeName="urn:be:fgov:ehealth:1.0:certificateholder:person:ssin" AttributeNamespace="urn:be:fgov:identification-namespace">
										<AttributeValue>{SSIN_professional}</AttributeValue>
									</Attribute>
									<Attribute AttributeName="urn:be:fgov:person:ssin" AttributeNamespace="urn:be:fgov:identification-namespace">
										<AttributeValue>{SSIN_professional}</AttributeValue>
									</Attribute>
								</AttributeStatement>
							</Assertion>
						</SubjectConfirmationData>
						<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
							<ds:X509Data>
								<ds:X509Certificate>{Base64_holderofkey_certificate}</ds:X509Certificate>
							</ds:X509Data>
						</ds:KeyInfo>
					</SubjectConfirmation>
				</Subject>
				<AttributeDesignator xmlns="urn:oasis:names:tc:SAML:1.0:assertion" AttributeName="urn:be:fgov:ehealth:1.0:certificateholder:person:ssin" AttributeNamespace="urn:be:fgov:identification-namespace"/>
				<AttributeDesignator xmlns="urn:oasis:names:tc:SAML:1.0:assertion" AttributeName="urn:be:fgov:ehealth:1.0:certificateholder:person:ssin:usersession:boolean" AttributeNamespace="urn:be:fgov:certified-namespace:ehealth"/>
				<AttributeDesignator xmlns="urn:oasis:names:tc:SAML:1.0:assertion" AttributeName="urn:be:fgov:person:ssin" AttributeNamespace="urn:be:fgov:identification-namespace"/>
				<AttributeDesignator xmlns="urn:oasis:names:tc:SAML:1.0:assertion" AttributeName="urn:be:fgov:person:ssin:ehealth:1.0:doctor:nihii11" AttributeNamespace="urn:be:fgov:certified-namespace:ehealth"/>
				<AttributeDesignator xmlns="urn:oasis:names:tc:SAML:1.0:assertion" AttributeName="urn:be:fgov:person:ssin:ehealth:1.0:nihii:doctor:generalist:boolean" AttributeNamespace="urn:be:fgov:certified-namespace:ehealth"/>
			</AttributeQuery>
		</Request>
	</soapenv:Body>
</soapenv:Envelope>
