Previous Topic: Status Redirects for HTTP Errors (SAML 2.0 IdP)Next Topic: Assertion Validity for Single Sign-on


Single Sign-on Initiation (SAML 2.0)

For SAML 2.0 partnerships, you can determine whether the IdP or the SP or both can initiate single sign-on. You can configure which transactions are allowed at each side of the partnership.

Consider how restricting the initiation of a transaction can impact other single sign-on features, such as exchanging user authentication context information.

Follow these steps:

  1. Log in to the Administrative UI.
  2. Select the SAML 2.0 partnership you want to edit.
  3. Navigate to the SSO and SLO step of the partnership wizard.
  4. In the Transactions Allowed field, select an option from the pull-down menu.
  5. Skip to the Confirm step of the wizard and save your changes.