Previous Topic: Set Up Encryption for SSO

Next Topic: Use Case for SAML Attributes As HTTP Headers

Supply SAML Attributes as HTTP Headers

An assertion response may include attributes in the assertion. These attributes can be supplied as HTTP header variables and used by a client application can use these headers for finer grained access control.

The benefits of including attributes in HTTP headers is as follows:

Note: The HTTP headers have size restrictions that the attributes cannot exceed. Federation Security Services can send an attribute in a header up to the web server size limit for a header. Only one assertion attribute per header is allowed. See the documentation for your web server to determine the header size limit.


Copyright © 2010 CA. All rights reserved. Email CA about this topic