Previous Topic: Protect the Assertion Retrieval or Artifact Resolution Service (optional)

Next Topic: Use a Client Cert. to Protect the Assertion Retrieval or Artifact Resolution Service

Use Basic over SSL Scheme to Protect the Assertion Retrieval Service

To protect the Assertion Retrieval Service (SAML 1.x) or the Artifact Resolution Service (SAML 2.0) with a Basic over SSL scheme, no additional configuration is required at the asserting party. A set of default policies are already configured when you install the [set to your product name].

At the relying party, there is also no configuration required, provided you can use one of the default root Certificate Authorities (CAs) in the smkeydatabase, which is used to establish an SSL connections between the relying party and the asserting party. If you want to use your own root CA instead of a default CA, import the CA certificate into the smkeydatabase.

More Information:

Enforce Policies that Protect Federation Web Services