Previous Topic: Integrate the Assertion Generator Plug-in with SiteMinder (SAML 1.x)

Next Topic: Create a Policy to Protect the Authentication URL

Protect the Authentication URL to Create a SiteMinder Session (SAML 1.x)

When you add a consumer to an affiliate domain, one of the parameters you are required to set is the AuthenticationURL parameter.

The file that the AuthenticationURL points to is the redirect.jsp file. This file is installed at the producer site where you install the Web Agent Option Pack or the SPS federation gateway. The redirect.jsp file must be protected by a SiteMinder policy so that the Web Agent presents an authentication challenge to users who request a protected consumer resource but do not have a SiteMinder session.

A SiteMinder session is required for the following features:

After a user is authenticated and successfully accesses the redirect.jsp file, a session is established. The redirect.jsp file redirects the user back to the producer Web Agent so that the Agent can process the request and generate the SAML assertion for the user.

The procedure for protecting the Authentication URL is the same regardless of the following set-ups:


Copyright © 2010 CA. All rights reserved. Email CA about this topic