SAML Claims Based Authentication Options

This section provides the following configuration options:

  • Security Token Service Endpoint (optional) - The URL for the Security Token Service (STS) endpoint to attempt to authenticate the crawl user against. If the Authentication Type is set to CLAIMS_BASED_AUTHENTICATION, then this field is required. The default value is the URL for the Microsoft Live ID STS.
  • Relaying Party Trust Identifier (AppliesTo, Realm) (optional) - The relaying party trust identifier to use when requesting a security token from the STS. This is sometimes known as the "AppliesTo" value, or the "Realm". For OneDrive for Business, this should be the URL to the root of the OneDrive instance (for example: https://domain-my.sharepoint.com). For AD FS, this is the ID value for the Relaying Party Trust between SharePoint and AD FS (for example: "urn:SHAREPOINT:adfs").