Previous Topic: Navigate to the Attribute Svc Dialog

Next Topic: SAML 2.0 Attribute Query Reference

Attribute Svc Dialog Fields and Controls

The following fields and controls are located on the Attribute Svc tab:

Enabled

Lets the Service Provider act as an Attribute Authority, able to generate attribute assertions based on a query message from a SAML requester.

Validity Duration

Specifies the number of seconds that the assertion is valid.

Default: 60 seconds

Require Signed Attribute Query

Indicates that the Attribute Authority requires a digitally signed attribute query from the SAML Requester.

Signing Options

Designates the Attribute Authority's signing requirements for attribute assertions and responses.

Sign Assertion

Instructs the Attribute Authority to sign only the attribute assertion. The SAML response is not signed.

Sign Response

Instructs the Attribute Authority to sign only the SAML response.

Sign Both

Instructs the Attribute Authority to sign the attribute assertion and the SAML response.

Sign Neither

Instructs the Attribute Authority not to sign the attribute assertion nor the SAML response.

User Lookup Group Box

Namespaces

Defines search specifications for user directory namespaces. The search specification is used by the Attribute Authority to locate the user locally using the NameID provided in the subject of the Attribute Query message.

Edit

Lets you access the Authentication Scheme Namespace Mapping dialog after selecting a namespace.

Note: At least one search specification must be provided.

Attribute Service Namespace Mapping Dialog

The Attribute Service Namespace Mapping dialog is where you specify the attribute that the Attribute Authority uses to search a namespace. This dialog contains the following field:

Search Specification

Specifies the attribute that the Attribute Authority uses to search a namespace. Use %s in the entry as a variable representing the name ID.

More Information:

Use an Attribute Authority to Authorize Users

SAML Service Provider Dialog--Attributes Tab

SAML Service Provider Dialog--Encryption Tab