Novell ACCESS MANAGER 3.1 SP1 - IDENTITY SERVER Manual page 221

Identity server guide
Table of Contents

Advertisement

The Single Logout channel is used when the user logs out. The Name Management channel is
used to the share the common identifiers for a user between identity and service providers.
When an identity provider has exchanged a persistent identifier for the user with a service
provider, the providers share the common identifier for a length of time. When either the
identity or service provider changes the format or value to identify the user, the system can
ensure that the new format or value is properly transmitted.
Select one or more of the following methods:
HTTP post is a browser-based method used when the SAML requester and responder need
to communicate using an HTTP user agent, if, for example, the communicating parties do
not share a direct path of communication. You also use this when the responder requires
user interaction in order to fulfill the request, such as when the user must authenticate to it.
HTTP redirect is a browser-based method that uses HTTP 302 redirects or HTTP GET
requests to communicate requests from this identity site to the service provider. SAML
messages are transmitted within URL parameters.
SOAP uses the SOAP back channel over HTTP messaging to communicate requests from
the identity provider to the service provider.
5 Click OK, then update the Identity Server.
6 (Conditional) If you have set up trusted providers and have modified these profiles, the
providers need to reimport the metadata from this Identity Server.
Configuring Communication Profiles 221

Advertisement

Table of Contents
loading

This manual is also suitable for:

Access manager 3.1 sp1

Table of Contents