Previous Topic: Identity Mapping to Establish a Federated Identity

Next Topic: Attributes for Customizing an Application

User Provisioning to Establish a Federated Identity

An investor at Financepro, Mary Smith, authenticates and clicks a link to access information at BankLtd. Initially, BankLtd cannot find a user account for Mary Smith. BankLtd wants to protect sensitive portions of its website while allowing new customers.

BankLtd has configured Federation Manager to implement provisioning to establish the new federated identity for Mary Smith. Federation Manager redirects Mary Smith to the provisioning server at BankLtd. The provisioning application, using identity information from Federation Manager, creates a user account in the user store.

The following illustration shows the user stores at FinancePro and BankLtd.

FM--User Provisioning Use Case

Federation Manager lets you configure provisioning as part of the partnership configuration at the relying party. In this example, you select remote provisioning and determine how assertion data is delivered to the BankLtd provisioning server. This configuration enables the dynamic creation of a user entry in the user store.