Sun Java System Access Manager 7 2005Q4 Federation and SAML Administration Guide

Federation in Access Manager

The Federation component of Access Manager provides an interface for creating, modifying, and deleting authentication domains and service and identity providers (both remote and hosted types) for a federated model. The web interface for the Liberty ID-FF in Access Manager is accessible from the Federation tab in the Access Manager Console, as shown in the following figure.

Figure 2–3 Federation Interface in Access Manager Console

Screen shot of the Federation interface in Access Manager Console

The following steps illustrate the process for creating a federation model using Access Manager:

  1. Create an authentication domain.

  2. Configure one or more hosted providers that belong to the authentication domain.

  3. Configure one or more remote providers that belong to the authentication domain, and include the metadata for the remote providers.

  4. Establish the trusted partnership between the providers. A hosted provider can choose to trust a subset of providers, either hosted or remote, that belong to the same authentication domain.