Previous Topic: Set Up Producing Authority Components

Next Topic: Set up Affiliate Domains and Add Sites to these Domains

Install the Producing-side Policy Server

The setup at the asserting party is as follows:

  1. Install the Policy Server.

    SiteMinder Policy Server Installation Guide.

  2. Set up the Session Server and its database for artifact single sign-on only.

    SiteMinder Policy Server Administration Guide.

    The session server is required only for artifact single sign-on because the session server stores an assertion before it is retrieved.

    Note: Do not use Microsoft Access as a session server database.

  3. Set up a policy store for use by the Policy Server.

    SiteMinder Policy Server Installation Guide.

    Important! If you initialize a new policy store, the Policy Server installer automatically import the affiliate objects contained in the ampolicy.smdif file. These objects are necessary for federation. If you use an existing policy store that you do not initialize, import the affiliate objects manually. To verify that the import is successful, log in to the FSS Administrative UI and click the Domains in the System tab. If the import is successful, you can see the FederationWebServices domain object.

  4. Set up a user directory.

    SiteMinder Policy Server Configuration Guide.

    This user directory must contain the users for which assertions are generated.

  5. (Optional) Enable error and trace logging for the Policy Server to see the communication between the asserting and relying parties.