Novell ACCESS MANAGER 3.1 SP1 - IDENTITY SERVER Manual page 191

Identity server guide
Table of Contents

Advertisement

ADFS Resource Server Information
Table 7-1
What You Need to Know
Default Value and Description
Provider ID
The default value is urn:federation:treyresearch.
This is the value that the ADFS server provides to the Identity Server in the
realm parameter of the query string. This value is specified in the Properties of
the Trust Policy page on the ADFS server. The parameter label is Federation
Service URI.
Sign-on URL
The default value is https://adfsresource.treyresearch.net/adfs/ls/.
This is the value that the identity provider redirects the user to after login.
Although it is listed as optional, and is optional between two Novell Identity
Servers, the ADFS server doesn't send this value to the identity provider. It is
required when setting up a trusted relationship between an ADFS server and a
Novell Identity Server.
This URL is listed in the Properties of the Trust Policy page on the ADFS
server. The parameter label is Federation Services endpoint URL.
Logout URL
The default value is https://adfsresource.treyresearch.net/adfs/ls/.
This parameter is optional. If it is specified, the user is logged out of the ADFS
server and the Identity Server.
Signing Certificate
This is the certificate that the ADFS server uses for signing.
You need to export it from the ADFS server. It can be retrieved from the
properties of the Trust Policy on the ADFS Server on the Verification
Certificates tab.
This certificate is a self-signed certificate that you generated when following
the Active Directory step-by-step guide.
To create a service provider configuration:
1 On the Identity Servers page, click Edit > WS Federation.
2 Click New > Service Provider, then fill in the following fields:
Name: Specify a name that identifies the service provider, such as TreyResearch.
Provider ID: Specify the provider ID of the ADFS server. The default value is
urn:federation:treyresearch.
Sign-on URL: Specify the URL that the user is redirected to after login. The default value is
https://adfsresource.treyresearch.net/adfs/ls/.
Logout URL: (Optional) Specify the URL that the user can use for logging out. The default
value is https://adfsresource.treyresearch.net/adfs/ls.
Service Provider: Specify the path to the signing certificate of the ADFS server.
3 Click Next, confirm the certificate, then click Finish.
4 Continue with
"Configuring the Name Identifier Format" on page
192.
Configuring WS Federation 191

Advertisement

Table of Contents
loading

This manual is also suitable for:

Access manager 3.1 sp1

Table of Contents