Previous Topic: Set up the Attribute Authority

Next Topic: Configure the Back Channel for the Attribute Authority

Configure Attributes at the Attribute Authority

When you configure an attribute, you indicate whether the attribute is used as part of a single sign-on request, or to satisfy an attribute query request. The attributes function is determined by the Retrieval Method field in the SAML Service Provider Attribute dialog.

If you want the same attribute to be used for both services, you must create two attribute statements that use the same Attribute name and variable; however, one attribute uses SSO as the retrieval method and one uses Attribute Services as the retrieval method.

To configure an attribute

  1. Configure Attributes for SSO Assertions.

    The configuration process for configuring attributes at the Attribute Authority are the same for configuring attributes for single sign-on assertions.

  2. Select Attribute Service for the Retrieval Method field in the SAML Service Provider Attribute dialog.

    If this attribute is requested by an attribute query, selecting Attribute Service as the Retrieval Method marks the attribute for inclusion in the attribute assertion.


Copyright © 2010 CA. All rights reserved. Email CA about this topic