The “Saml Authentication" menu is used to configure Saml2 interfaces for account provisioning and authentication. Saml interfaces are configured per client, allowing multiple interfaces in a multi-client setup. In the "Clients > Access and security" tab, a "SAML authentication" checkbox and a "SAML entity ID" field are available for configuration.
Description
|
Setting |
What does the setting do? |
|---|---|
|
Test mode |
This should be used only for testing when the IdP is a created IdP from e.g. http://172.17.0.112:8081/simplesaml. |
|
Ignore validation |
This should be set on true only when the configured IdP sends a SAMLArtifact or SAMLResponse that does not contain any signature.Otherwise, the SAMLArtifact or SAMLResponse signature will be validated with the configured certificate. |
|
Enable algorithm check |
This should be used to check the key store Algorithm (RSA or DSA). |
|
Send Saml request |
Based on this parameter the samlRequest will be send to the IDP (this has to be disabled for ADFS3.0). |
|
Multiple IdPs |
More than one IdentityProvider setti |
|
Import without self-registration |
If the value is ticked/true, persons are automatically created and no self registration page will be presented. |
|
Update existing user |
If the value is set to ticked/true, persons that already exists will be updated with the attributes found from the SAML2 response. |
|
Ignore unmapped fields |
Determines whether all source fields specified by mapping elements will be expected and imported in the imported file. Ticked/true: The attributes transferred in the import source for which no mapping is defined will be ignored. Unticked/false: If an attribute which is transferred with the imported data does not have any mapping defined, an exception will be generated. ed with the imported data does not have any mapping defined, an exception will be generated. |
|
Is Reference |
Determines whether all source fields specified by mapping elements will be expected and imported in the imported file. Ticked/true: The mapping elements determine which fields will be imported. Additional columns found in the import file will be ignored. Unticked/false: Only the columns found in the import file will be imported. Additional attributes specified by mapping elements will be ignored. |