Previous Topic: Federated User Identification for a PartnershipNext Topic: Configure Federation Users


Federation Users Configuration at the Asserting Party

The Federation Users dialog is the second step in the partnership wizard when the local entity is the asserting party. This step lets you specify which users are authorized to access target resources at the remote site. Additionally, you can enable the CA SiteMinder® Connector for CA SiteMinder® Federation Standalone integration with CA SiteMinder®.

The CA SiteMinder® Connector is a software component that enables a deployed CA SiteMinder® system to integrate with CA SiteMinder® Federation Standalone. If CA SiteMinder® Federation Standalone is at the asserting party, the CA SiteMinder® Connector can create a CA SiteMinder® Federation Standalone session from a CA SiteMinder® session. To establish the CA SiteMinder® session, CA SiteMinder® authenticates the user first and then the user visits the asserting party.

You can enable the CA SiteMinder® Connector on a per-partnership basis; however, only one global connector configuration applies to all partnerships. The connector is available only when the check box in the Deployment Settings is selected and a configuration is defined. You access the Deployment Settings from the Infrastructure tab in the UI. After enabling the Connector globally, CA SiteMinder® Federation Standalone evaluates the partnership configuration to determine whether the Connector is enabled. The partnership uses the global Connector configuration.

To disable the Connector for the partnership, clear the check box at the partnership level. To disable the Connector globally, disable it in the Deployment Settings.

Important! If the Connector is disabled at the global level, CA SiteMinder® Federation Standalone ignores the check box at the partnership level.