OpenSSO Enterprise includes a sample that can be run for testing your configurations. It is located in container_context_root/opensso/samples/saml2/sae. In the sample, auto-federation and transient name identifier, two features of SAML v2, are used. If there are no actual users on either the identity provider side or the service provider side, you need to use the following procedure to change the authentication framework to ignore user profiles for these two features to work correctly.
Login to OpenSSO Enterprise administration console as administrator.
By default, this is amadmin.
Click the name of the realm you are modifying.
Click the Authentication tab.
Click Advanced Properties.
Select the Ignore Profile radio button under User Profile.
Log out of the console.