

Single Sign-On Service › SSO Getting Started Guide › SSO using a Third-party IdP and Self-registration › Configure and Apply an OpenID Authentication Scheme › Configure an OpenID Authentication Scheme
Configure an OpenID Authentication Scheme
Configure an OpenID authentication scheme when using an external IdP to authenticate users for SSO application requests.
Follow these steps:
- Click Infrastructure, Authentication.
- Click Authentication Schemes.
- Click Create Authentication Scheme.
Verify that the Create a new object of type Authentication Scheme is selected.
Click OK
- Enter a name for the scheme that indicates its purpose.
- Specify a protection level.
- Select OpenID Template from the Authentication Scheme Type list.
Scheme-specific fields and controls appear.
- Complete the fields:
- Use Relative Target
-
Select the check box. Disregard the values for Web Server Name/Port.
- Target
-
/siteminderagent/forms/openid.fcc
This is the default string.
- (Optional) Select Persist Authentication Session Variables to store user data in the session store.
If you are not using the session store, set the following fields:
- Pre Processing Chain
-
com.ca.sm.openid.command.StoreClaimsToContext
- Disregard the remaining fields and click Submit.
The authentication scheme is saved and can be assigned to a realm.
Copyright © 2014 CA.
All rights reserved.
 
|
|