Resource Partner--Name ID Settings

The Name IDs page is where you configure the name identifier in the assertion. The Name ID names a user in a unique way. The format of the name identifier establishes the type of content that is used for the ID. For example, the format can be the user DN, in which case the content can be a uid.
casso10
HID_wsfed-rp-nameids
The Name IDs page is where you configure the name identifier in the assertion. The Name ID names a user in a unique way. The format of the name identifier establishes the type of content that is used for the ID. For example, the format can be the user DN, in which case the content can be a uid.
  • Name ID Format
    Specifies the format for the Name ID. Pick one options displayed in the pull-down menu.
    For a description of each format, see
    Assertions and Protocols for the OASIS Security Assertion Markup Language (SAML) V2.0
    specification.
  • Name ID Type
The Name ID section contains option buttons that specify the name identifier type. The choices are:
Static
Indicates that the name identifier is the value of the Static Value field. Activates the Static Value field; disables other controls.
  • User Attribute
    Indicates that the name identifier resides in the user attribute specified in the Attribute Name field. Activates the Attribute Name field; disables other controls.
  • DN Attribute
    Indicates that an attribute associated with a DN provides the name identifier. Selecting this option activates the Attribute Name and the DN Spec fields. It also activates the Allow Nested Groups check box.
  • Allow Nested Groups
    Indicates that nested groups are allowed when selecting the DN. Enabled if the DN Attribute option is selected.
Name ID Fields
Contains fields that specify information about the selected name identifier. The fields in this section are context-sensitive, being determined according to the Name ID Type selection.
Static Value
Specifies the static text that the Policy Server uses for all name identifiers for this Resource Partner.
  • Attribute Name
    Specifies the name of the user attribute which contains the name identifier, or the attribute that is associated with a group or organizational unit DN.
  • DN Spec
    Specifies the group or organizational unit DN
    CA Single Sign-On
    uses for obtaining the associated attribute to be used as the name identifier.