8.3 CardSpace Configuration Scenarios
The following sections explain the configuration process for three common ways of using
CardSpace for authentication.
Section 8.3.1, "Authenticating with a Personal Card," on page 228
Section 8.3.2, "Authenticating with a Managed Card," on page 230
Section 8.3.3, "Authenticating with a Managed Card Backed by a Personal Card," on page 234
8.3.1 Authenticating with a Personal Card
The following scenario explains how to configure the Identity Server to be a relying party and then
allow the user to log in to the Identity Server by using a personal card.
process:
Figure 8-3
Relying Parties
X
Application
1. The user requests authentication at the Identity Server by entering the base URL of the Identity
Server in the browser. This opens the user portal application.
2. The user selects an authentication card that requires a personal card.
3. From the available cards in CardSpace, the user selects the card that meets the security
requirements, and the CardSpace client software sends it to the Identity Server.
228 Novell Access Manager 3.1 SP2 Identity Server Guide
Using a Personal Card to Authenticate to a Relying Party
Y
Z
1
3
2
Security Token
Personal Card
Managed Card
CardSpace Client
Figure 8-3
illustrates this
Need help?
Do you have a question about the ACCESS MANAGER 3.1 SP2 - IDENTITY SERVER GUIDE 2010 and is the answer not in the manual?
Questions and answers