If the Agent for SAP Web AS is operating in Federation mode, complete single sign-on configuration for the partnership. To configure single sign-on at the relying party, specify the SAML binding that is supported by the relying party and the related aspects of how the relying party handles single sign-on communication.
Detailed instructions for single sign-on configuration can be found in the Federation Manager Guide.
To access the single sign-on dialog, select the SSO and SLO step from the Federation Manager UI Partnership Wizard.
When you configure single sign-on, be aware of the following fields:
Be sure to select one or both of the profiles. If you select HTTP-Artifact, also configure the authentication method for the outgoing back channel.
Specifies the target resource URL at the destination site. In standalone federation mode, set the value of this field to the SAP portal or to the web server proxy to the SAP Web AS portal.
(Optional) Replaces the value specified in the Target field with the value of the Relay State query parameter for initiated single sign-on.
This check box gives you more control over the target because using the Relay State query parameter lets you dynamically define the target.
Lists the URLs of the Single Sign-On Services at the remote asserting party. Each entry in the table specifies the location where the AuthnRequest service can redirect an AuthnRequest message.
Note: Some Federation Manager configuration settings are in different dialogs depending on the Federation Manager version. For the exact location of the configuration settings, consult the CA Federation Manager Guide and UI online help for your version of Federation Manager.
| Copyright © 2012 CA. All rights reserved. |
|