Previous Topic: Configure a SAML 2.0 Affiliation (Optional)Next Topic: Set a Password for SAML Artifact Back Channel Authentication


Configure Required General Information

Select the General tab to configure required items, such as the ID of the Service Provider and Identity Provider, or the SAML version being used for generating assertions.

To configure the general settings:

  1. Log in to the FSS Administrative UI.
  2. Open the SAML Service Provider Properties dialog.
  3. Select the General tab and fill in values for the following required fields:
    SP ID

    Specifies a URI that uniquely identifies the Service Provider, such as sp.example.com.

    IdP ID

    Specifies a URI that uniquely identifies the Identity Provider, such as idp.ca.com. The IdP ID becomes the Issuer field in the assertion.

    Skew Time

    Specifies the difference, in seconds, between the system clock at the Identity Provider and the system clock at the Service Provider. Skew Time is used for single sign-on and single logout.

    For single sign-on, the value of the Skew Time and the single sign-on validity duration (Validity Duration field on the SSO tab) determine how long an assertion is valid. Review how the assertion validity is calculated to understand more about the skew time.

    For single logout, the values of the Skew Time and the SLO validity duration (Validity Duration field on the SLO tab) determine the total time that the single logout request is valid. Review how the single logout request validity is calculated to understand more about the skew time.