Previous Topic: IDP Discovery Profile

Next Topic: IDP Discovery Configuration at the Service Provider

IDP Discovery Configuration at the Identity Provider

You configure the IDP Discovery profile in the IDP Discovery group box in the SSO and SLO dialog.

Note: Click Help for a description of fields, controls, and their respective requirements.

To enable the Identity Provider Discovery Profile

  1. Select the Enable IDP Discovery checkbox.
  2. Set the value for the Service URL field to the Identity Provider Discovery Profile servlet. For Federation Manager this URL is:

    http://host:port/affwebservices/public/saml2ipd

    host

    Represents the common domain that you specify in the Common Domain field.

    port

    Specifies the Apache HTTP or HTTPS port you specified when installing Federation Manager.

    The URL can also begin with https.

  3. Specify the cookie domain in the Common Domain field.
  4. (Optional) Select the Enable Persistent Cookie check box to preserve the common cookie in the browser.

    Storing the common cookie in the browser keeps track of the Identity Providers a user visits and the order in which they are visited.

IdP Discovery is enabled at the IdP.