Configuring SAML and Liberty Trusted Providers
219
n
ov
do
cx (e
n)
16
Ap
ril 20
10
For configuration information, see
“Configuring an Intersite Transfer Service Target for a Service
Provider” on page 221
.
7.11.2 Specifying the Intersite Transfer Service URL for the
Login URL Option
Liberty and SAML 2.0 support a single sign-on URL. Because SAML 1.1 does not support a single
sign-on URL, you need to specify the Intersite Transfer Service URL in the
Login URL
option on the
authentication card for the SAML 1.1 identity provider:
Figure 7-3
SAML 1.1 Authentication Card
In order for a card to appear as a login option, you must specify a
Login URL
and select the
Show
Card
option.
Figure 7-4
illustrates a possible configuration that requires the Intersite Transfer
Service for the SAML 1.1 protocol.
Figure 7-4
Federated Identity Configuration
If you want a card to appear that allows the user to log in to Site A (as shown in
Figure 7-3
), you
need to specify a value for the
Login URL
option.
Using the DNS names from
Figure 7-4
, the complete value for the
Login URL
option is as follows:
Identity Server
Site A
Identity Server
Site B
Access Gateway
Web Server
Identity Provider: A
DNS: idp.sitea.novell.com
Service Provider: 2
DNS: eng.provo.novell.com
URL: https://eng.provo.novell.com/myapp
Identity Provider: B
Service Provider: 1
DNS: idp.siteb.novell.com
Summary of Contents for ACCESS MANAGER 3.1 SP2 - README 2010
Page 4: ...4 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 12: ...12 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 158: ...158 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 172: ...172 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 182: ...182 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 290: ...290 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 362: ...362 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 374: ...374 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...