Sun Java System Access Manager 7 2005Q4 Federation and SAML Administration Guide
    
A
 
 Access Manager
  and federation ( Index Term Link )
  and Liberty-based web services ( Index Term Link )
  implementation of Liberty Alliance Project ( Index Term Link )
 
 Access Manager documentation set ( Index Term Link )
 
 account federation, definition ( Index Term Link )
 
 affiliate entity
  See also entities
  configuring ( Index Term Link )
 
 affiliation, definition ( Index Term Link )
 
 ambulkfed, See bulk federation
 
 amSAML.xml ( Index Term Link )
 
 API
  Authentication Web Service ( Index Term Link )
  client for Discovery Service ( Index Term Link )
  common security ( Index Term Link )
  common service ( Index Term Link )
  Data Services Template ( Index Term Link ) ( Index Term Link )
  Discovery Service ( Index Term Link )
  federation ( Index Term Link )
  Interaction Service ( Index Term Link )
  PAOS binding ( Index Term Link )
  SAML ( Index Term Link )
  SOAP Binding Service ( Index Term Link )
 
 architecture
  Discovery Service ( Index Term Link )
  SAML ( Index Term Link )
 
 Artifact Timeout ( Index Term Link )
 
 Assertion Skew Factor For notBefore Time ( Index Term Link )
 
 Assertion Timeout ( Index Term Link )
 
 assertion types, and SAML ( Index Term Link )
 
 Attribute Mapper ( Index Term Link )
 
 attribute provider, definition ( Index Term Link )
 
 attributes
  Authentication Web Service ( Index Term Link )
  Discovery Service ( Index Term Link )
  Liberty Personal Profile Service ( Index Term Link )
  SOAP Binding Service ( Index Term Link )
 
 authentication and authentication context ( Index Term Link )
 
 authentication context, definition ( Index Term Link )
 
 authentication domain, definition ( Index Term Link )
 
 authentication domains, overview ( Index Term Link )
 
 Authentication Service Specification, overview ( Index Term Link )
 
 authentication services
  Authentication Service (non-Liberty) ( Index Term Link )
  Authentication Web Service (Liberty) ( Index Term Link )
 
 Authentication Web Service
  API ( Index Term Link )
  attribute ( Index Term Link )
  extract ( Index Term Link )
  or Authentication Service (non-Liberty) ( Index Term Link )
  overview ( Index Term Link )
  process ( Index Term Link )
  sample ( Index Term Link ) ( Index Term Link )
  schema file ( Index Term Link )
  XML service file ( Index Term Link )
 
 Authorizer ( Index Term Link )
 
 Authorizer interface ( Index Term Link ) ( Index Term Link )
 
 auto-federation ( Index Term Link ) ( Index Term Link )
    
B
 
 basic authentication ( Index Term Link )
 
 bootstrapping Discovery Service ( Index Term Link )
 
 bulk federation ( Index Term Link ) ( Index Term Link )
    
C
 
 circle of trust, definition ( Index Term Link )
 
 client, definition ( Index Term Link )
 
 client API
  Data Services Template ( Index Term Link )
  Discovery Service ( Index Term Link )
 
 Client Profiles Specification, overview ( Index Term Link )
 
 common domain
  definition ( Index Term Link )
  overview ( Index Term Link )
 
 common domain cookie ( Index Term Link )
 
 common domain services
  configuring properties ( Index Term Link )
  configuring URLs ( Index Term Link )
  installation ( Index Term Link )
 
 common security API ( Index Term Link )
 
 common service interfaces ( Index Term Link )
 
 concepts, Liberty Alliance Project ( Index Term Link )
 
 containers ( Index Term Link )
 
 customize, graphical user interface ( Index Term Link )
    
D
 
 data services
  See also Data Services Template
  API ( Index Term Link )
  developing ( Index Term Link )
  Liberty Employee Profile Service ( Index Term Link )
  Liberty Personal Profile Service ( Index Term Link )
  overview ( Index Term Link )
 
 Data Services Template ( Index Term Link )
  API ( Index Term Link )
  client API ( Index Term Link )
 
 Data Services Template Specification, overview ( Index Term Link )
 
 Default64ResourceIDMapper ( Index Term Link )
 
 DefaultDiscoAuthorizer class ( Index Term Link )
 
 DefaultHexResourceIDMapper ( Index Term Link )
 
 defederation, definition ( Index Term Link )
 
 definitions
  discovery entries ( Index Term Link )
  federation ( Index Term Link )
  identity ( Index Term Link )
  identity federation ( Index Term Link )
  Liberty Alliance Project concepts ( Index Term Link )
  provider federation ( Index Term Link )
 
 deploying Liberty-based system ( Index Term Link )
 
 developing data services ( Index Term Link )
 
 Directory Server documentation ( Index Term Link )
 
 DiscoEntryHandler interface ( Index Term Link )
 
 discovery entries ( Index Term Link )
  as dynamic attributes ( Index Term Link )
  as user attributes ( Index Term Link )
  definition ( Index Term Link )
  for bootstrapping ( Index Term Link )
 
 Discovery Service
  API ( Index Term Link )
  architecture ( Index Term Link )
  attributes ( Index Term Link )
  bootstrapping ( Index Term Link )
  client API ( Index Term Link )
  discovery entries ( Index Term Link ) ( Index Term Link )
  extract ( Index Term Link )
  overview ( Index Term Link )
  process ( Index Term Link )
  resource offerings ( Index Term Link )
  sample ( Index Term Link )
  XML service files ( Index Term Link )
 
 Discovery Service Specification, overview ( Index Term Link )
 
 documentation, Access Manager ( Index Term Link )
 
 dynamic identity provider proxying ( Index Term Link ) ( Index Term Link )
    
E
 
 employee profile service sample ( Index Term Link )
 
 entities
  configuring affiliate ( Index Term Link )
  configuring provider ( Index Term Link )
  creating ( Index Term Link )
  overview ( Index Term Link )
 
 entity descriptors, See entities
    
F
 
 federated identity, definition ( Index Term Link )
 
 federation
  affiliate entity
   configuring ( Index Term Link )
  and single sign-on ( Index Term Link )
  API ( Index Term Link )
  authentication domains ( Index Term Link )
  auto-federation ( Index Term Link )
  bulk federation ( Index Term Link )
  definition ( Index Term Link )
  dynamic identity provider proxying ( Index Term Link )
  entities ( Index Term Link )
   creating ( Index Term Link )
  entities and authentication domains ( Index Term Link )
  features of ( Index Term Link )
  graphical user interface ( Index Term Link )
  in Access Manager ( Index Term Link )
  pre-login process ( Index Term Link )
  pre-login URL ( Index Term Link )
  process of ( Index Term Link )
  provider entity
   configuring ( Index Term Link )
  sample environment ( Index Term Link )
  samples ( Index Term Link )
 
 federation, definition of ( Index Term Link )
 
 federation API ( Index Term Link )
 
 federation cookie, definition ( Index Term Link )
 
 federation termination, definition ( Index Term Link )
 
 Federation Termination Notification Protocol, overview ( Index Term Link )
    
G
 
 global logout ( Index Term Link )
 
 graphical user interface, federation ( Index Term Link )
    
I
 
 identifiers and name registration ( Index Term Link )
 
 identity, definition ( Index Term Link )
 
 identity, definition of ( Index Term Link )
 
 identity federation, definition ( Index Term Link )
 
 identity federation, definition of ( Index Term Link )
 
 identity federation and single sign-on ( Index Term Link )
 
 identity provider, definition ( Index Term Link )
 
 identity service, definition ( Index Term Link )
 
 installation, common domain services ( Index Term Link )
 
 Interaction Service ( Index Term Link )
 
 Interaction Service Specification, overview ( Index Term Link )
 
 interfaces
  Authentication Web Service ( Index Term Link )
  Authorizer ( Index Term Link ) ( Index Term Link )
  common service ( Index Term Link )
  DiscoEntryHandler ( Index Term Link )
  Discovery Service ( Index Term Link )
  request handler ( Index Term Link )
  ResourceIDMapper ( Index Term Link ) ( Index Term Link )
    
L
 
 Liberty Alliance Project
  concepts ( Index Term Link )
  Liberty Identity Federation Framework ( Index Term Link )
  Liberty Identity Service Interface Specifications ( Index Term Link )
  Liberty Identity Web Services Framework ( Index Term Link )
  overview ( Index Term Link )
  SAML comparison ( Index Term Link )
  service schema files ( Index Term Link )
  specifications ( Index Term Link )
 
 Liberty Alliance Project specifications ( Index Term Link )
 
 Liberty-based system deployment ( Index Term Link )
 
 Liberty-based web services, in Access Manager ( Index Term Link )
 
 Liberty Employee Profile Service ( Index Term Link )
  schema file ( Index Term Link )
 
 Liberty-enabled client, definition ( Index Term Link )
 
 Liberty-enabled proxy, definition ( Index Term Link )
 
 Liberty ID-FF Bindings and Profiles, overview ( Index Term Link )
 
 Liberty ID-FF Protocols and Schema, overview ( Index Term Link )
 
 Liberty ID-SIS Employee Profile Service Specification, overview ( Index Term Link )
 
 Liberty ID-SIS Personal Profile Service Specification, overview ( Index Term Link )
 
 Liberty Identity Federation Framework, overview ( Index Term Link )
 
 Liberty Identity Service Interface Specifications, overview ( Index Term Link )
 
 Liberty Identity Web Services Framework, overview ( Index Term Link )
 
 Liberty Personal Profile Service ( Index Term Link )
  attributes ( Index Term Link )
  extract ( Index Term Link )
  schema file ( Index Term Link )
 
 Liberty process sample ( Index Term Link )
    
M
 
 Metadata Description, schema file ( Index Term Link )
    
N
 
 name identifier, definition ( Index Term Link )
 
 Name Identifier Mapping Protocol, overview ( Index Term Link )
 
 name registration ( Index Term Link )
 
 Name Registration Protocol, overview ( Index Term Link )
    
O
 
 overview
  authentication and authentication context ( Index Term Link )
  authentication domains ( Index Term Link )
  Authentication Service Specification ( Index Term Link )
  Authentication Web Service ( Index Term Link )
  auto-federation ( Index Term Link ) ( Index Term Link )
  bulk federation ( Index Term Link ) ( Index Term Link )
  Client Profiles Specification ( Index Term Link )
  common domain ( Index Term Link )
  common domain cookie ( Index Term Link )
  common domain services
   installation ( Index Term Link )
   properties ( Index Term Link )
   URLs ( Index Term Link )
  data services ( Index Term Link )
  Data Services Template ( Index Term Link )
  Data Services Template Specification ( Index Term Link )
  Discovery Service ( Index Term Link )
  Discovery Service Specification ( Index Term Link )
  dynamic identity provider proxying ( Index Term Link ) ( Index Term Link )
  entities ( Index Term Link ) ( Index Term Link )
  federation API ( Index Term Link )
  federation features ( Index Term Link )
  federation management ( Index Term Link )
  federation process ( Index Term Link )
  Federation Termination Notification Protocol ( Index Term Link )
  global logout ( Index Term Link )
  identifiers and name registration ( Index Term Link )
  identity federation and single sign-on ( Index Term Link )
  implementation of Liberty Alliance Project ( Index Term Link )
  Interaction Service ( Index Term Link )
  Interaction Service Specification ( Index Term Link )
  Liberty Alliance Project ( Index Term Link )
  Liberty Alliance Project specifications ( Index Term Link )
  Liberty Employee Profile Service ( Index Term Link )
  Liberty ID-FF Bindings and Profiles ( Index Term Link )
  Liberty ID-FF Protocols and Schema ( Index Term Link )
  Liberty ID-SIS Employee Profile Service Specification ( Index Term Link )
  Liberty ID-SIS Personal Profile Service Specification ( Index Term Link )
  Liberty Identity Federation Framework ( Index Term Link )
  Liberty Identity Service Interface Specifications ( Index Term Link )
  Liberty Identity Web Services Framework ( Index Term Link )
  Liberty Personal Profile Service ( Index Term Link )
  Name Identifier Mapping Protocol ( Index Term Link )
  Name Registration Protocol ( Index Term Link )
  PAOS binding ( Index Term Link )
  pre-login URL ( Index Term Link )
  public interfaces ( Index Term Link )
  SAML ( Index Term Link )
  samples ( Index Term Link )
  Security Mechanisms Specification ( Index Term Link )
  Single Logout Protocol ( Index Term Link )
  Single Sign-On and Federation Protocol ( Index Term Link )
  SOAP Binding Service ( Index Term Link )
  SOAP Binding Specification ( Index Term Link )
    
P
 
 PAOS binding ( Index Term Link )
  PAOS or SOAP ( Index Term Link )
  sample ( Index Term Link ) ( Index Term Link )
 
 PAOS Binding Service, schema file ( Index Term Link )
 
 patches, Solaris ( Index Term Link )
 
 policy creation ( Index Term Link )
 
 pre-login process ( Index Term Link )
 
 pre-login URL ( Index Term Link )
 
 principal, definition ( Index Term Link )
 
 procedures
  create policy for DefaultDiscoAuthorizer ( Index Term Link )
  store discovery entries ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
 
 process
  Authentication Web Service ( Index Term Link )
  Discovery Service ( Index Term Link )
  federation ( Index Term Link )
  federation and single sign-on ( Index Term Link )
  pre-login ( Index Term Link )
  SOAP Binding Service ( Index Term Link )
 
 profile, definition ( Index Term Link )
 
 profile types
  and SAML ( Index Term Link )
  web artifact profile ( Index Term Link )
  web POST profile ( Index Term Link )
 
 provider entity
  See also entities
  configuring ( Index Term Link )
 
 provider federation, definition ( Index Term Link )
 
 provider federation, definition of ( Index Term Link )
 
 pseudonym
  definition
   See name identifier
 
 public interfaces ( Index Term Link )
    
R
 
 receiver, definition ( Index Term Link )
 
 related JES product documentation ( Index Term Link )
 
 request handler ( Index Term Link )
 
 RequestHandler interface ( Index Term Link )
 
 resource offering, definition ( Index Term Link )
 
 resource offerings ( Index Term Link )
 
 ResourceID Mapper ( Index Term Link )
 
 ResourceIDMapper interface ( Index Term Link ) ( Index Term Link )
    
S
 
 SAML ( Index Term Link )
  amSAML.xml ( Index Term Link )
  API ( Index Term Link )
  architecture ( Index Term Link )
  Artifact Timeout ( Index Term Link )
  Assertion Skew Factor For notBefore Time ( Index Term Link )
  assertion types ( Index Term Link )
  AssertionTimeout ( Index Term Link )
  Liberty comparison ( Index Term Link )
  overview ( Index Term Link )
  profile types ( Index Term Link )
   web artifact profile ( Index Term Link )
   web POST profile ( Index Term Link )
  SAML Artifact Name ( Index Term Link )
  SAML SOAP receiver ( Index Term Link )
   SOAP messages ( Index Term Link )
  samples ( Index Term Link )
  Sign SAML Assertion ( Index Term Link )
  Sign SAML Request ( Index Term Link )
  Sign SAML Response ( Index Term Link )
  site Identifiers ( Index Term Link )
  Target Specifier ( Index Term Link )
  target URLs ( Index Term Link )
  trusted partners ( Index Term Link )
  using ( Index Term Link )
 
 SAML Artifact Name ( Index Term Link )
 
 SAML SOAP receiver ( Index Term Link )
  SOAP messages ( Index Term Link )
 
 sample use case ( Index Term Link )
 
 samples
  Authentication Web Service ( Index Term Link ) ( Index Term Link )
  Discovery Service ( Index Term Link )
  employee profile service ( Index Term Link )
  federation ( Index Term Link ) ( Index Term Link )
  PAOS binding ( Index Term Link ) ( Index Term Link )
  SAML ( Index Term Link )
  use case process ( Index Term Link )
  web service consumer ( Index Term Link )
 
 samples overview ( Index Term Link )
 
 schema files ( Index Term Link )
  Authentication Web Service schema ( Index Term Link )
  Employee Profile schema ( Index Term Link )
  Metadata Description ( Index Term Link )
  PAOS Binding Service ( Index Term Link )
  Personal Profile schema ( Index Term Link )
  SOAP Binding schema ( Index Term Link )
 
 Security Mechanisms Specification, overview ( Index Term Link )
 
 sender, definition ( Index Term Link )
 
 server, definition ( Index Term Link )
 
 service provider, definition ( Index Term Link )
 
 service schema files ( Index Term Link )
 
 Sign SAML Assertion ( Index Term Link )
 
 Sign SAML Request ( Index Term Link )
 
 Sign SAML Response ( Index Term Link )
 
 single logout, definition ( Index Term Link )
 
 Single Logout Protocol, overview ( Index Term Link )
 
 single sign-on, definition ( Index Term Link )
 
 Single Sign-On and Federation Protocol, overview ( Index Term Link )
 
 single sign—on, and federation ( Index Term Link )
 
 site identifiers ( Index Term Link )
 
 SOAP Binding, extract ( Index Term Link )
 
 SOAP Binding Service
  API ( Index Term Link )
  attributes ( Index Term Link )
  overview ( Index Term Link )
  PAOS or SOAP ( Index Term Link )
  process ( Index Term Link )
  request handler ( Index Term Link )
  schema file ( Index Term Link )
  XML service file ( Index Term Link )
 
 SOAP Binding Specification, overview ( Index Term Link )
 
 SOAP messages ( Index Term Link )
 
 Solaris
  patches ( Index Term Link )
  support ( Index Term Link )
 
 specifications (Liberty Alliance Project) ( Index Term Link )
  Liberty Identity Federation Framework ( Index Term Link )
  Liberty Identity Service Interface Specifications ( Index Term Link )
  Liberty Identity Web Services Framework ( Index Term Link )
 
 support, Solaris ( Index Term Link )
    
T
 
 Target Specifier ( Index Term Link )
 
 target URLs ( Index Term Link )
 
 trusted partners ( Index Term Link )
 
 trusted provider, definition ( Index Term Link )
    
U
 
 use cases ( Index Term Link )
  sample process ( Index Term Link )
    
W
 
 web artifact profile ( Index Term Link )
 
 web POST profile ( Index Term Link )
 
 web service consumer, definition ( Index Term Link )
 
 web service consumer sample ( Index Term Link )
 
 web service provider, definition ( Index Term Link )
 
 web services (Liberty-based), in Access Manager ( Index Term Link )
    
X
 
 XML service files
  amSAML.xml ( Index Term Link )
  Authentication Web Service ( Index Term Link )
  Discovery Service ( Index Term Link )
  SOAP Binding Service ( Index Term Link )
 
 XSD files ( Index Term Link )