Previous Topic: Configure the Authentication Scheme that Protects the Artifact ServiceNext Topic: Basic over SSL to Protect the Assertion Retrieval Service


Basic Authentication to Protect the Service that Retrieves Assertions

For HTTP-Artifact single sign-on, the asserting party sends the assertion across a secure back channel to the relying party. For basic authentication, configure a password to access to the service that resolves the artifact and retrieves the assertion. The service then sends the assertion across the back channel to the relying party.

You can use Basic authentication with SSL is enabled; however, SSL is not required.

Note: The password is only relevant if you use Basic or Basic over SSL as the authentication method across the back channel.

Follow these steps: for the SAML 1.x Assertion Retrieval Service

  1. Log in to the FSS Administrative UI.
  2. Double-click the affiliate you want to edit.

    The Affiliate Properties dialog opens.

  3. Enter a value for the following fields:
  4. Click OK to save the changes.

Follow these steps: for the SAML 2.0 Artifact Resolution Service

  1. Log in to the FSS Administrative UI.
  2. Double-click the Service Provider you want to edit.
  3. From the General tab, select Configure Backchannel Authentication.
  4. In the Backchannel Properties dialog, enter a value for the following fields:
  5. Click OK to save the changes.