The Name IDs tab is where you configure the Name Identifier, which names a user in a unique way in the assertion. The format of the Name Identifier establishes the type of content used for the ID. For example, the format might be the User DN, in which case the content might be a uid.
The Name IDs tab contains the following fields:
Specifies the Name Identifier format. Pick one of the following:
For a description of each format, see Section 8.3 of the Assertions and Protocols for the OASIS Security Assertion Markup Language (SAML) V2.0 specification (sstc-saml-core-2.0-cd-04.pdf).
Name ID Type Group Box
The Name ID group box contains radio buttons that specify the Name Identifier type. The choices are as follows:
Indicates that the Name Identifier is specified by the value in the Static Value field. Activates the Static Value field; disables other controls.
Indicates that the Name Identifier resides in the user attribute specified in the Attribute Name field. Activates the Attribute Name field; disables other controls.
Indicates that the Name Identifier will be specified by an attribute associated with a DN. Activates the User Attribute field, the DN Spec field, and the Allow Nested Groups check box; disables the Static Value field.
Indicates that nested groups are allowed when selecting the DN. Enabled if the DN Attribute Radio Button is selected.
Name ID Fields Group Box
Contains fields that specify information about the selected Name Identifier. The fields in this group box are context-sensitive, being determined according to the Name ID Type selection.
Specifies the static text value that will be used for all name identifiers for this Service Provider.
Specifies the name of the user attribute which contains the name identifier, or the attribute associated with a group or organizational unit DN.
Specifies the group or organizational unit DN to be used for obtaining the associated attribute to be used as the name identifier.
Opens the SiteMinder User Lookup dialog to locate the user group and select a DN to populate the DN Spec field.
Other Controls
Specifies a SAML Affiliation for the Service Provider to join. Select from any configured SAML Affiliation object. If an Affiliation is selected, the other controls on the tab are grayed out (the Affiliation settings will be used instead).
| Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |