The following fields and controls are located on the Attribute Svc tab:
Lets the Service Provider act as an Attribute Authority, able to generate attribute assertions based on a query message from a SAML requester.
Specifies the number of seconds that the assertion is valid.
Default: 60 seconds
Indicates that the Attribute Authority requires a digitally signed attribute query from the SAML Requester.
Designates the Attribute Authority's signing requirements for attribute assertions and responses.
Instructs the Attribute Authority to sign only the attribute assertion. The SAML response is not signed.
Instructs the Attribute Authority to sign only the SAML response.
Instructs the Attribute Authority to sign the attribute assertion and the SAML response.
Instructs the Attribute Authority not to sign the attribute assertion nor the SAML response.
User Lookup Group Box
Defines search specifications for user directory namespaces. The search specification is used by the Attribute Authority to locate the user locally using the NameID provided in the subject of the Attribute Query message.
Lets you access the Authentication Scheme Namespace Mapping dialog after selecting a namespace.
Note: At least one search specification must be provided.
Attribute Service Namespace Mapping Dialog
The Attribute Service Namespace Mapping dialog is where you specify the attribute that the Attribute Authority uses to search a namespace. This dialog contains the following field:
Specifies the attribute that the Attribute Authority uses to search a namespace. Use %s in the entry as a variable representing the name ID.
| Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |