Previous Topic: Configure Required General Information for WS-Federation

Next Topic: Assertion Validity for Single Sign-on

Configure Single Sign-on for WS-Federation

The Resource Partner and the Account Partner exchange user information, session information and Account Partner information, in an assertion document sent in a security token response message. When you configure single sign-on at the Account Partner, you determine how the Account Partner delivers an assertion to a Resource Partner.

To set-up single sign-on at the Account Partner

  1. Log in to the Policy Server User Interface.
  2. Select the Resource Partner you want to configure.
  3. Open the Resource Partner Properties dialog.
  4. Select the SSO tab.
  5. Fill in entries for the following fields on this tab:
  6. Optionally, configure policy restrictions based on IP address or time by clicking on Restrictions and completing the appropriate fields.

More Information:

Resource Partner Properties Dialog--SSO Tab

Customizing Content in WS-Federation Assertions