Previous Topic: Federation Web Services

Next Topic: SAML 2.0 Artifact and POST Profiles

SAML 1.x Artifact and POST Profiles

For the SAML 1.x artifact and POST profiles, the Federation Web Services application uses the following services:

Assertion Retrieval Service (SAML 1.x Artifact only)

A producer-side component. This service handles a SAML request for the assertion that corresponds to a SAML artifact by retrieving the assertion from the SiteMinder session server. The assertion retrieval request and response behavior is defined by the SAML specification.

Note: Only the SAML artifact profile uses the assertion retrieval service.

Session Synchronization (SAML 1.x)

A producer-side component that validates and terminates sessions for the SAML Affiliate Agent (A SiteMinder value-added service, supported by a standards-based SOAP RPC mechanism)

Notification Alert (SAML 1.x)

A producer-side component that logs resource access notification events for the SAML Affiliate Agent (A SiteMinder value-added service, supported by a standards-based SOAP RPC mechanism)

SAML Credential Collector (SAML 1.x)

A consumer-side component that receives a SAML artifact or an HTTP form with an embedded SAML response and obtains the corresponding SAML assertion. The credential collector issues SiteMinder cookies to a browser of the user.

Intersite Transfer Service (SAML 1.x)

For SAML POST profile, a producer site component that transfers a user from the producer site to a consumer site. For SAML artifact profile, the same function is performed by the Web Agent, which acts as the Intersite Transfer Service.