IBM Tivoli Federated Identity Manager, Version 6.2.2

Planning a Liberty federation

You must specify the values for federation properties when configuring a Liberty federation. Keep in mind however, that support for Liberty protocol will be deprecated in the later versions of IBM Tivoli Federated Identity Manager.

Familiarize yourself with the Liberty standards documentation before implementing a single sign-on federation. The standards specify data exchange and message processing. Know what information you must provide to your partners, and what information your partner must provide to you.

Liberty Alliance

http://www.projectliberty.org

The Federation wizard prompts you to supply values for a number of properties. Most of them can be modified later, after federation creation.

The choice of profile (or profiles) to use is based on both business policy decisions and network security architecture. Federation partners must agree on the profile choices in order to activate user single sign-on across the federation. The choice must be made before configuring the federation.

The Liberty standard supports a unique range of single sign-on profiles. The profiles extend beyond specifications for achieving federated single sign-on, and can include other functions such as single logout, federation termination notification, and register name identification.



Feedback