The Enterprise Gateway can extract user attributes from a SAML attribute assertion and store them in a message attribute.
The Enterprise Gateway can send a SAMLP request for user attributes to a SAML PDP. The SAML PDP returns the requested user attributes to the Enterprise Gateway in a SAMLP response.
The Enterprise Gateway can use the list of stored attributes to generate a SAML attribute assertion.
Validate the information contained within a SAML authentication assertion.
Request an authentication decision from a SAML PDP based on an authenticated user's credentials.
Once a client has been successfully authenticated, the Enterprise Gateway can insert a SAML authentication assertion into the downstream message.
Validate a SAML authorization assertion.
Request a SAML authorization assertion from a SAML PDP and optionally insert the assertion into the downstream message.
Insert a SAML authorization assertion into the downstream message.