Previous Topic: Identity Mapping to Establish a Federated Identity

Next Topic: Attributes for Customizing an Application

User Provisioning to Establish a Federated Identity

An investor at Financepro, Mary Smith, authenticates and clicks a link to access information at BankLtd. Initially, BankLtd cannot find a user account for Mary Smith. BankLtd wants to protect sensitive portions of its web site while allowing new customers.

BankLtd has configured Federation Manager to implement provisioning to establish the new federated identity for Mary Smith. Federation Manager redirects Mary Smith to the provisioning server at BankLtd. The provisioning application, using identity information from Federation Manager, creates a user account in the user store.

The following figure shows the user stores at FinancePro and BankLtd.

FM--User Provisioning Use Case

Federation Manager lets you configure provisioning as part of the partnership configuration at the relying party. In this example, you choose remote provisioning and determine how assertion data is delivered to the BankLtd provisioning server. This configuration enables the dynamic creation of a user entry in the user store.


Copyright © 2010 CA. All rights reserved. Email CA about this topic