Previous Topic: Specify the Key Model

Next Topic: Configure the Key Provider Library

Configure the Shared Secret

The shared secret is an encryption key used for encrypting consumer cookies between the browser and the consumer. By default, the value for this attribute is the key that you entered when installing the SAML Affiliate Agent. For security reasons, this value is masked.

Shared secret is a valid key attribute only when KeyModel=SharedSecret, which is the default KeyModel setting.

The following is an example of the shared secret attribute:

<SharedSecret>yGT1uXzscC2E3yGPxak2txVl4q+eg2bu</SharedSecret>

Note: The SAML Affiliate Agent’s shared secret is independent of any shared secret set at the producer-side Web Agent and Policy Server. The SAML Affiliate Agent’s shared secret does not have to match the producer’s shared secret. However, if more than one SAML Affiliate Agent is installed, for example, in a clustered web server environment, the shared secret for each web server must match.