Previous Topic: Set Up Asserting Party ComponentsNext Topic: Set up Affiliate Domains and Add Sites to these Domains


Install the Policy Server at the Asserting Party

The setup at the asserting party is as follows:

  1. Install the Policy Server.

    Policy Server Installation Guide.

  2. Set up the session store and its database for artifact single sign-on only.

    Policy Server Administration Guide.

    The session store is required only for artifact single sign-on because the session server stores an assertion before it is retrieved.

  3. Set up a policy store for use by the Policy Server.

    Important! If you initialize a new policy store, the Policy Server installer automatically imports the affiliate objects in the ampolicy.smdif file. These objects are necessary for federation. If you use an existing policy store, import the affiliate objects manually. To verify that the import is successful, log in to the Administrative UI and navigate to Policy, Domain, Domains. If the import is successful, you can see the FederationWebServices domain object in the list.

    Policy Server Installation Guide.

  4. Set up a user directory.

    Policy Server Configuration Guide.

    This user directory must contain the users for which assertions are generated.

  5. (Optional) Enable error and trace logging for the Policy Server to see the communication between the asserting and relying parties.