Previous Topic: Set Up Links to Initiate WS-Federation Single Sign-on

Next Topic: Initiate Single Sign-on at the Resource Partner

Initiate Single Sign-on at the Account Partner

If a user visits the Account Partner before going to the Resource Partner, there needs to be a link the user can select that generates an HTTP Get request to the Account Partner's Single Sign-on Service. The hard-coded link that you create must point to this service and must contain the RP Provider ID and, optionally, parameters, such as the wct parameter, the value of which must contain the time in UTC format.

The syntax for the link to the Single Sign-on Service is as follows:

https://ap_server:port/affwebservices/public/wsfedsso?wa=wsignin1.0&wtrealm=RP_ID

ap_server:port

Specifies the server and port number of the system at the Account Partner that is hosting the Web Agent Option Pack or the SPS federation gateway, depending on which component is installed in your federation network.

RP_ID

Resource Partner identity