Previous Topic: Create an Agent Configuration Object

Next Topic: Create an Authentication Scheme for the Agent for SharePoint

Create or Modify One User Directory Connection

The Policy Server communicates with an existing user directory to authenticate users. The user directory needs a connection defined in the SiteMinder Administrative UI. Create a connection for the directory that contains users who require access to SharePoint resources.

Important! The Agent for SharePoint supports only one SiteMinder user directory.

Note: The directory vendors that the Agent for SharePoint supports are limited to the directories SiteMinder supports. For more information about directories that SiteMinder supports, see the Platform Support Matrix at www.support.ca.com.

This section describes the procedure to create a user directory connection.

Follow these steps:

  1. Log in to the SiteMinder Administrative UI.

    The relevant tabs for your administrator privileges appear.

  2. Click Infrastructure, Directory, User Directory, Create User Directory.

    The Create User Directory pane appears.

  3. Enter the Name and an optional description.
  4. Select the Directory type from the Namespace list and complete the required connection information under the Directory Setup.

    Note: Enable paging support if you are using the Active Directory as the User Store. The Active Directory Namespace disables paging by default; enable paging support by setting the registry key to one. For more information, see the troubleshooting topic about enabling paging for searches of Active Directory User Stores.

  5. If your directory server requires credentials for searches, click the Require Credentials check box. Type the user name and password of an authorized account.

    Note: The Require Credentials setting is required for LDAP directories which support anonymous search. This setting supports queries that the SiteMinder Claims Provider makes to the user directory to support the SharePoint People Picker. For more information about these credentials, see the administrator of your directory server.

  6. (Optional) Specify the user directory profile attributes that are SiteMinder reserves for its own use in the fields under User Attributes.
  7. Click Submit.

    The Create User Directory task is submitted for processing, and the confirmation message appears.

  8. Create a virtual attribute mapping for your user claim.
  9. (Optional) Create additional virtual attribute mappings for group claims or role claims.
  10. (Optional) Increase the size of the MaxUserAttributeLength setting so that the names of user groups are not truncated when they appear in the claims provider.

Note: For more information about creating or modifying a user directory connection, see the SiteMinder Policy Server Configuration Guide.

More information:

Locate the SiteMinder Agent for SharePoint Platform Support Matrix