Previous Topic: Set the Skew Time WS-Federation Single Sign-onNext Topic: Set the Authentication Scheme Protection Level


Configure Single Sign-on for WS-Federation

The Resource Partner and the Account Partner exchange user information, session information and Account Partner information, in an assertion document sent in a security token response message. When you configure single sign-on at the Account Partner, you determine how the Account Partner delivers an assertion to a Resource Partner.

To set-up single sign-on at the Account Partner

  1. Log in to the FSS Administrative UI.
  2. Select the Resource Partner you want to configure.
  3. Open the Resource Partner Properties dialog.
  4. Select the SSO tab.
  5. Fill in entries for the following fields on this tab:
  6. Optionally, configure policy restrictions based on IP address or time by clicking on Restrictions and completing the appropriate fields.

More Information:

Customize a WS-Federation Assertion (optional)