Previous Topic: Connect to the ODBC Directory

Next Topic: Create the SP-to-IdP Partnership

Identify the Partnership Entities

After establishing the user directory connection, you should identify the local and remote sides of the partnership. In the Federation Manager UI, each partner is referred to as an entity.

The following procedures tell you what values to provide for the local and remote entities. However, in a real network configuration it may be common that each side creates a local entity, exports the local entity to a metadata file, then exchanges the files so that each side can define the remote entity.

To create the local SP

  1. From the Federation tab, select Entities.

    The View Federation Entities window opens.

  2. Click Create Entity.

    The Create Entity dialog displays.

  3. Make the following selections in the first step of the entity wizard then click Next.
  4. Complete the fields in the second step as follows then click Next.

    Note: The entity ID and name must be the same as you specified for the remote SP entity at the Identity Provider.

  5. Review the settings and click Finish.

You return to the View Federation Entities window. Configure the remote partner.

To create the remote IdP

  1. Begin at the View Federation Partnerships window.
  2. Click Create Entity in the Federation Entity List.

    The Create Entity dialog displays.

  3. Make the following selections in the first step of the entity wizard then click Next.
  4. Complete the fields in the second step of the wizard as follows:

    Note: The entity ID and name must be the same as on the Identity Provider side.

    SSO Service URL Group Box

  5. Review the settings and click Finish.

After the local entity and remote entity are configured, you can create a partnership.


Copyright © 2010 CA. All rights reserved. Email CA about this topic