...
For all true support questions regarding Ping Identity – or any non-Intercax provider of SAML2 service – please contact the vendor directly through their formal Support programs.
General Settings for a Ping Federate Service Provider (SP Connection)
Connection Role | SP |
Browser SSO Profiles | true |
Protocol | SAML 2.0 |
Connection Template | No Template |
WS-Trust STS | false |
Outbound Provisioning | false |
Browser SSO | true |
IdP Discovery | false |
Attribute Query | false |
Partner's Entity ID (Connection ID) | http://MYSP.MYCOMPANY.MYCOM:MYPORT |
Connection Name | MYSP.MYCOMPANY.MYCOM |
Company | Intercax |
Contact Name | Name of Admin |
Contact Number | 555-555-1212 |
Contact Email | admin@mycompany.mycom |
Application Name | MYSP.MYCOMPANY.MYCOM |
SAML Profiles
IdP-Initiated SSO | false | |
IdP-Initiated SLO | false | |
SP-Initiated SSO | true | |
SP-Initiated SLO | false | |
Valid Minutes Before | 5 | |
Valid Minutes After | 5 | |
Assertion Creation | ||
Enable Standard Identifier | true | |
Attribute | SAML_SUBJECT | |
Subject Name Format | urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress | |
Attribute | ||
Attribute Name Format | urn:oasis:names:tc:SAML:2.0:attrname-format:basic | |
Attribute | first_name | |
Attribute Name Format | urn:oasis:names:tc:SAML:2.0:attrname-format:basic | |
Attribute | fullname | |
Attribute Name Format | urn:oasis:names:tc:SAML:2.0:attrname-format:basic | |
Attribute | last_name | |
Attribute Name Format | urn:oasis:names:tc:SAML:2.0:attrname-format:basic | |
Attribute | uid | |
Attribute Name Format | urn:oasis:names:tc:SAML:2.0:attrname-format:basic | |
Adapter instance name | SP-used-HTML-Form-IdP-Adapter | |
Selected adapter | SP-used-HTML-Form-IdP-Adapter | |
Adapter | HTML Form IdP Adapter | |
Mapping Method | Retrieve additional attributes from multiple data stores using one mapping | |
Data Store | LDAP Source (LDAP) |
Attribute Sources & User Lookup
Attribute Source | LDAP Source | |
Attribute Source ID | attributeSourceId1 | |
Type of Data Store | LDAP | |
Data Store | activity,http://intercax.com (OpenLDAP) | |
Base DN | ou=Users,dc=intercax,dc=com | |
Search scope | SUBTREE_SCOPE | |
Attribute | Subject DN | |
Attribute | displayName | |
Attribute | givenName | |
Attribute | ||
Attribute | sn | |
Attribute | uid | |
Filter | (uid=${username}) | |
SAML_SUBJECT | mail (LDAP) | |
mail (LDAP) | ||
first_name | givenName (LDAP) | |
fullname | displayName (LDAP) | |
last_name | sn (LDAP) | |
uid | uid (LDAP) | |
Criterion | (None) | |
Protocol Settings | ||
Endpoint | URL: http://syndeia35-uat.intercax.com:9000/authenticate/SAML2 (POST) | |
Artifact | false | |
POST | true | |
Redirect | true | |
SOAP | false | |
Require digitally signed AuthN requests | false | |
Always Sign Assertion | true | |
Sign Response As Required | true | |
Status | Inactive | |
Credentials | ||
Selected Certificate | 01:82:13:47:69:A2 (CN=Syndeia, OU=Security, O=Intercax, L=Dunwoody, ST=GA, C=US) | |
Include Certificate in KeyInfo | true | |
Include Raw Key in KeyValue | false | |
Selected Signing Algorithm | RSA SHA256 |