7.4 Create IDP Partner Attribute Profile

Create IDP Partner Attribute Profile page is used to allow the administrator to define which attributes map to which Access Manager session attributes.

General

Following tale describes the elements in the General section of the Create IDP Partner Attribute Profile page:

Element Description

Name

Type a Partner Name.

Description

Type a short description that will help you or another Administrator identify this partner in the future.

Ignore Unmapped Attribute

Indicates how to deal with Assertion Attributes not present or that are present but have no value in the Access Manager Session Attribute column.

  • If selected, any Assertion Attribute not present in the table or with no value mapped to Access Manager will be ignored and not added to the Access Manager session.

  • If not selected, all Assertion Attribute that are not present in the table or don't have a value mapped to Access Manager will be stored in the Access Manager session with the same attribute name it had in the Assertion.

Default IDP Partner Attribute Profile

Theidp-attribute-profile is the default Attribute Mapping Profile. Select to use the default attribute profile.

Attribute Mapping

Following table describes elements in the Attribute Mapping section of the Create IDP Partner Attribute Profile page:

Element Description

Actions

Choose from the following options:

  • Create - Click to create a new Partner Attribute Profile using the Create Attribute Mapping dialog box.

  • Edit - Select a row in the table and choose Edit to open the Attribute Mapping dialog box. After edit, click Ok to save the changes or Cancel to cancel the changes.

  • Delete - To delete a row from the table, select the row and choose Delete.

View

Choose commands from the View menu to control how the columns are displayed:

  • Columns - Click a column header name to quickly show or hide a single column.

  • Detach - Click to open the table in a larger window.

  • Reorder Columns - Click to open a dialog that lets you change the order of the table columns.

Create

Click to create a new Partner Attribute Profile using the Create Attribute Mapping dialog box.

Edit

Select a row in the table and click Edit to open the Attribute Mapping dialog box. After edit, click OK to save the changes, or Cancel to cancel the changes.

Delete

To delete a row from the table, select the row and click on Delete.

Detach

Click to open the table in a larger window.

Row

Displays the row number.

Message Attribute Name

Lists the added Message Attribute Names.

OAM Session Attribute Name

Lists the added OAM Session Attribute Names.

Request Form Partner

Displays true if selected or false if not selected.

Number of Rows

Displays the number of rows in the table.

Save

Click Save to save the changes made to the page.

Create Attribute Mapping dialog box

The following table describes the elements in the Attribute Mapping dialog box of the Attribute Mapping section:

Element Description

Message Attribute Name

This is the name for the attribute in the incoming/outgoing Federation messages.

OAM Session Attribute Name

This is the name by which the attributes is known to the local Access Manager server.

Request Form Partner

If selected, it indicates if this attribute is sent in the Request made to the IdP (a value for this attribute is requested by the SP).

OK

Click OK to populate the created data in Attribute Mapping table.

Cancel

Click Cancel to cancel the changes made in the window.

Close

Click to close the window.

Related Topics

Managing Identity Federation Partners in Administrator's Guide for Oracle Access Management