Previous Topic: Configure the SAML 2.0 Authentication Scheme at the SP

Next Topic: Test SAML 2.0 Single Sign-on

Protect the Target Resource at the SP

After configuring a SAML 2.0 authentication scheme, use this scheme in a policy that protects the target resource at Service Provider.

To protect the target resource

  1. From the System tab of the FSS Administrative UI, create a policy domain called Domain for IdP.demo Visitors.
  2. Define a Web Agent. In this deployment, the Agent is sp-webagent. This is the Agent protecting the server with the Web Agent Option Pack installed.
  3. Associate the sp-webagent with the Domain for Idp.demo Visitors to protect the realm in this domain.
  4. Add the user directory that holds users user1.
  5. To the policy domain, add a persistent realm with the following components then click OK to save it.
  6. To the realm, add a rule with the following components then click OK to save it.

    Accept the defaults for all other fields.

  7. Add a policy with the following components then click OK to save it.

    The target resource is now protected by SiteMinder.

  8. Exit the Policy Server User Interface.
  9. Use HTML Pages to Test the Federation Set-up.

The protection policy for the target resource is complete.


Copyright © 2010 CA. All rights reserved. Email CA about this topic