Deployment Example: SAML v2 Using Sun OpenSSO Enterprise 8.0

ProcedureTo Configure OpenSSO Enterprise for the Modified LDAP Schema

Before You Begin

This procedure assumes you have completed 7.3 Modifying the Directory Server Schema.

  1. Access https://lb4.sp-example.com:1081/opensso/console from a web browser.

  2. Log in to the OpenSSO Enterprise console as the administrator.

    Username

    amadmin

    Password

    ossoadmin

    The Common Tasks tab is displayed.

  3. Click the Access Control tab and / (Top-level Realm) on the Access Control page.

  4. Click the Data Stores tab.

  5. Under the Data Stores tab, click embedded.

    The Generic LDAPv3 page is displayed.

  6. Add the following values to properties on the Generic LDAPv3 page.

    • Type sunFMSAML2NameIdentifier in the New Value box of the LDAP User Object Class property and click Add.

    • Add the following values to the LDAP User Attribute property.

      • Type sun-fm-saml2-nameid-infokey in the New Value box and click Add.

      • Type sun-fm-saml2-nameid-info in the New Value box and click Add.

  7. Click Save on the Generic LDAPv3 page.

  8. Log out of the OpenSSO Enterprise console.