When you configure the authentication request, you specify the comparison context for a type or a
contract.
7.9 Configuring an Authentication Response for
a Service Provider
The Liberty and SAML 2.0 protocols support slightly different options for configuring how you
want the Identity Server to respond to an authentication request from a service provider. The SAML
1.1 protocol does not support sending an authentication request. However, you can configure an
Intersite Transfer Service (see
trigger a response from the Identity Server.
When the Identity Server receives an authentication request from a trusted service provider, the
request contains the conditions that the Identity Server needs to fulfill. The Authentication Response
page allows you to configure how you want the Identity Server to fulfill the binding and name
identifier conditions of the request, or for SAML 1.1, respond to the Intersite Transfer Service. For
configuration information, see one of the following:
Section 7.9.1, "Configuring the Liberty Authentication Response," on page 212
Section 7.9.2, "Configuring the SAML 2.0 Authentication Response," on page 213
Section 7.9.3, "Configuring the SAML 1.1 Authentication Response," on page 215
The Defaults page allows you to specify which contract is used when the authentication request
specifies a class or type rather than a contract. For more information, see
Authentication Defaults," on page
When the service provider sends an authentication request that specifies a specific contract, you
need to ensure that the Identity Server has a the contract matches the expected URI. For information
on how to configure such a contract, see
Authentication Type," on page
7.9.1 Configuring the Liberty Authentication Response
After you create a trusted service provider, you can configure how your Identity Server responds to
authentication requests from the service provider.
1 In the Administration Console, click Devices > Identity Servers > Edit > Liberty > [Service
Provider] > Authentication Response.
2 Select the binding method.
212 Novell Access Manager 3.1 SP2 Identity Server Guide
Section 7.11, "Using the Intersite Transfer Service," on page
130.
Section 3.5.2, "Creating a Contract for a Specific
132.
217) to
Section 3.5, "Specifying
Need help?
Do you have a question about the ACCESS MANAGER 3.1 SP2 - IDENTITY SERVER GUIDE 2010 and is the answer not in the manual?