This section contains the following topics:
Prerequisites for a CA SiteMinder® Asserting Partner
How To Configure a CA SiteMinder® Account Partner
Add a Resource Partner to an Affiliate Domain
Configure General Information for the Resource Partner Object
Select Users for Which Assertions are Generated
Configure a Name ID for a WS-Federation Assertion
Configure Single Sign-on for WS-Federation
Customize a SAML Assertion Response (optional)
Configure Signout for WS-Federation
Configure Attributes for WS-Federation Assertions (optional)
For CA SiteMinder® to serve as the asserting partner, verify the following conditions:
For more information, see the Web Agent Option Pack Guide.
CA SiteMinder®, as an Account Partner generates assertions for its business partners, the Resource Partners. To establish a federated partnership, the Account Partner needs information about each Resource Partner. Create a Resource Partner object for each partner. Define how the two entities communicate to pass assertions and to satisfy profiles, such as single sign-on.
To configure CA SiteMinder® to act as an Account Partner
You can save a Resource Partner entity without configuring a complete SSO profile. However, you cannot pass an assertion to the Resource Partner without configuring SSO.
Tips:
The optional tasks for configuring a Resource Partner include:
The Administrative UI provides two ways to navigate to the legacy federation configuration dialogs.
You can navigate in one of two ways:
When you create an object, a page displays with a configuration wizard. Follow the steps in the configuration wizard to create the object.
When you modify an existing object, a page displays with a series of tabs. Modify the configuration from these tabs. These tabs are the same as the steps in the configuration wizard.
To identify a Resource Partner as an available consumer of assertions, add the Resource Partner to an affiliate domain at the Account Partner. You then configure the Resource Partner so that the Account Partner can issue security token response messages containing assertions.
To add a Resource Partner to an affiliate domain
The Create Resource Partner page appears.
The General page appears.
Note: Click Help for a description of fields, controls, and their respective requirements.
Copyright © 2013 CA.
All rights reserved.
|
|