Previous Topic: Configure the Federation Agent for Windows AuthenticationNext Topic: Troubleshoot using the Agent Trace Log File


Delegated Authentication Setup

The Federation Agent works with CA SiteMinder® Federation Standalone so users can authenticate in an IWA context. Because the Federation Agent is acting as a third-party authentication service, configure the federation system to use delegated authentication.

Follow these steps:

  1. Log in in to the Administrative UI.
  2. Select the SAML 1.1 or SAML 2.0 partnership you want to edit. Edit a Producer-> Consumer partnership or an IdP -> SP partnership.
  3. Navigate to one of the following steps in the partnership wizard:
  4. Set the Authentication Mode to Delegated.
  5. Set the Delegated Authentication Type to Open Format Cookie.

    Note the following information:

  6. Enter the delegated authentication URL.

    Example: http://hostname:portnum/iwa/IWARedirect

Delegated authentication is enabled.

Note: For more information about delegated authentication, see the CA SiteMinder® Federation Standalone Guide.