Configuration Guides › Federation Security Services Guide › Authenticate SAML 1.x Users at a Consumer › How To Protect a Resource with a SAML 1.x Authentication Scheme
How To Protect a Resource with a SAML 1.x Authentication Scheme
Protect target federation resources by configuring a SOA Security Manager policy that uses the SAML 1.x authentication scheme.
To create a policy that uses the SAML authentication scheme
- Create a realm that uses the SAML authentication scheme. The realm is the collection of target resources.
You can create a realm in the following ways:
- Create a unique realm for each authentication scheme already configured.
- Configure a single target realm that uses a custom authentication scheme to dispatch requests to the corresponding SAML authentication schemes. Configuring one realm with a single target for all producers simplifies configuration of realms for SAML authentication.
- Configure an associated rule and optionally, a response.
- Group the realm, rule, and response into a policy that protects the target resource.
Important! Each target URL in the realm is also identified in an intersite transfer URL. The intersite transfer URL redirects a user from the producer to the consumer. You specify this URL in the URL TARGET variable. At the producer site, an administrator includes this URL in a link that redirects the user to the consumer.