Configuring the SAML subject and mapping attributes
When Verify sends
a SAML assertion to the
service provider, the Verify asserts that the user is
authenticated. The authenticated user is identified in the <saml:Subject>
element. The SAML assertion
can also contain a <saml:AttributeStatement> element, depending on the
information you specify in the Attribute Mappings section of the page. The <saml:AttributeStatement> asserts that certain
attributes are associated with the authenticated user. Configure these elements based on the
service provider requirements.
Before you begin
See SAML 2.0 in theIBM® Verify
Documentation Hub.- See Configuring SAML single sign-on in the identity provider.
About this task
Verify can be used as an
identity provider for several target applications. These applications or service
providers have their own set of user and group attributes. An attribute is a
characteristic or trait of an entity that describes the entity. It is a name:value
pair.
- Convey user information from Verify to the service provider.
- Create an account for the user at the service provider.
- Authorize specific services at the service provider.