Federation Security Services Guide › Deploy Federation Using a Manual Configuration › Add Functionality to the Federation Deployment › Protect the Target Resource at the SP › Enable Single Logout at the IdP
Enable Single Logout at the IdP
You can initiate single logout at the IdP. At the IdP, idp.demo, you enable single logout on a per-SP basis.
To configure single logout
- Log in to the FSS Administrative UI and access the SAML Service Provider Properties dialog for sp.demo.
- Select the SLO tab.
- Select the HTTP-Redirect.
The remaining fields become active.
- Enter values for the following fields:
- SLO Location URL
-
http://www.sp.demo:81/affwebservices/public/saml2slo
Defines the SLO servlet at the SP.
- SLO Confirm URL
-
http://www.idp.demo:80/idpsample/SLOConfirm.jsp.
- Accept defaults for the other fields.
- From the Policy Server Management Console, enable the session server.
Copyright © 2012 CA.
All rights reserved.
|
|