Previous Topic: Configure Artifact SSO at the IdP

Next Topic: Test the Partnership (Artifact SSO)

Configure Artifact SSO at the SP

This procedure shows you how to configure HTTP-Artifact profile for SSO.

To configure Artifact profile for SSO

  1. From the Federation Manager UI, click the Federation tab and select Partnerships.

    The View Federation Partnerships window displays.

  2. Select Action, Deactivate next to the entry for Demo Partnership.

    You must deactivate a partnership prior to editing it.

  3. Click Action, Edit next to the entry for DemoPartnership.

    The dialog for the first step of the Partnership wizard opens.

  4. Click the SSO and SLO step.
  5. In the SSO group box, do the following:
    1. Check HTTP-Artifact for the SSO Binding field.
    2. Select No Data for the Redirect Mode field. The URL can remain the same as was used for POST profile.
    3. Do not change the settings for the SSO Service URL.
  6. In the SOAP Artifact Resolution URLs group box, click Add Row and enter the following URL to indicate that there is no authentication required for the back channel:

    http://idp1.example.com:9090/affwebservices/
    saml2artifactresolutionnoauth

    Be sure to select this entry by clicking the radio button in the Select column of the table.

  7. In the Back Channel group box, select the following:
  8. Skip the SLO and Status Redirect URL group boxes.
  9. Click the Confirm step and review the configuration.
  10. Click Finish to complete the configuration.

Artifact binding is configured at SP1.


Copyright © 2010 CA. All rights reserved. Email CA about this topic