Previous Topic: SSO using a Third-party IdP and Self-registrationNext Topic: Import Keys and Certificates into the Certificate Data Store


Configure Federated Partnerships

A common SSO scenario is to allow consumers access to an application using credentials from an account at a third-party site. The third-party site acts as an external Identity Provider (IdP) relative to CA CloudMinder.

The following information for the partnership applies:

Set up two partnerships:

Note: In many of the procedures, the term asserting party refers to the Producer or Identity Provider. The term relying party refers to the Consumer, Service Provider, and Resource Partner.

The following figure shows the configuration tasks required for a partnership:

Flow diagram showing partnership configuration procedure

The procedures are detailed in the following topics:

  1. Import keys and certficates into the certificate data store.
  2. Create the IdP and SP entities
  3. Establish a user directory connection.
  4. Configure the IdP-to-SP partnership.
  5. Configure the Sp-to-IdP partnership.
  6. Activate the partnership.