You can include a a federation attribute variable for inclusion in a policy expression that protects a resource at a SAML Requester site.
The fields for the Attribute Variable Editor dialog are as follows:
Names the variable.
Provides a way to describe the variable.
Specifies the type of data used to express the variable supported by the Policy Server. Options are:
Using the IdP ID value as a reference, this parameter identifies the SAML 2.0 authentication scheme that contains the configuration for this federation attribute. When you configure a SAML 2.0 authentication scheme, IdP ID is one of the fields you set. This field for the federation attribute variable lists all IdP ID values for all configured SAML 2.0 authentication schemes. Select the IdP ID associated with authentication scheme that defines the attribute you want to use.
Unique name that identifies the variable to the SAML 2.0 authentication scheme. This value must match the value you entered when adding an attribute in the Attributes tab of the SAML 2.0 Authentication Scheme.
| Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |