To configure sessions for a site using the SAML Affiliate Agent as the consumer, be aware of the following:
Session management between a producer and a SAML Affiliate Agent may be handled in one of three ways:
Both the producer and the SAML Affiliate Agent establish sessions for the user. If a user idles out or reaches a timeout at the producer, the SAML Affiliate Agent is not notified. The same is true for a session that expires at the SAML Affiliate Agent.
Both the producer and SAML Affiliate Agent establish sessions. An active session is required at the producer for the SAML Affiliate Agent session to stay active. Producer sessions can remain active after a SAML Affiliate Agent session is terminated.
If the SAML Affiliate Agent has implemented a shared sessioning model, the producer and the SAML Affiliate Agent can maintain a shared session. Sessions at the producer and the SAML Affiliate Agent are terminated if the producer session expires or the user logs out at either site.
Note: For more information about session management, see the SiteMinder SAML Affiliate Agent Guide.
Copyright © 2010 CA. All rights reserved. | Email CA about this topic |