272
Novell Access Manager 3.1 SP2 Identity Server Guide
n
ov
do
cx (e
n)
16
Ap
ril 20
10
ID:
This is provider ID. The ADFS server provides this value to the service provider in the
realm parameter in the assertion. You set this value in the
Properties
of the
Trust Policy
on the
ADFS server. The label is
Federation Service URI
. The default value is
urn:federation:adatum
.
sloUrl:
This is the sign-on URL. This URL is listed in the
Properties
of the
Trust Policy
on the
ADFS server. The label is
Federation Services endpoint URL
.
ssoUrl:
This is the logout URL. The default value is
https://
adfsresource.treyresearch.net/adfs/ls/
. The ADFS server makes no distinction
between the login URL and the logout URL.
If the values do not match the ADFS values, you need to edit the metadata.
2
To edit the metadata, click
Edit
. For configuration information, see
Section 10.4.5, “Editing the
WS Identity Provider Metadata,” on page 272
.
3
To view information about the signing certificate, click
Certificates
.
4
Click
OK
twice.
10.4.5 Editing the WS Identity Provider Metadata
You can view and edit the metadata of the ADFS server.
1
In the Administration Console, click
Devices > Identity Servers > Edit > WS Federation >
[Identity Provider] > Metadata > Edit.
2
Configure the following fields:
Provider ID:
This is the provider ID. The ADFS server provides this value to the service
provider in the realm parameter in the assertion. You set this value in the
Properties
of the
Trust
Policy
on the ADFS server. The label is
Federation Service URI
. The default value is
urn:federation:adatum
.
Sign-on URL:
This is the sloUrl. This URL is listed in the
Properties
of the
Trust Policy
on the
ADFS server. The label is
Federation Services endpoint URL
.
Logout URL:
This is the ssoUrl. The default value is
https://
adfsresource.treyresearch.net/adfs/ls/
. The ADFS server makes no distinction
between the login URL and the logout URL.
3
If you need to import a new signing certificate, click the
Browse
button and follow the prompts.
4
To view information about the signing certificate, click
Certificates
.
5
Click
OK
twice, then update the Identity Server.
10.4.6 Modifying the Authentication Card
When you create an identity provider, you must also configure an authentication card. After it is
created, you can modify it.
1
In the Administration Console, click
Devices > Identity Servers > Edit > WS Federation >
[Identity Provider] > Authentication Card.
2
Modify the values in one or more of the following fields:
Summary of Contents for ACCESS MANAGER 3.1 SP2 - README 2010
Page 4: ...4 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 12: ...12 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 158: ...158 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 172: ...172 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 182: ...182 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 290: ...290 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 362: ...362 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 374: ...374 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...