Preparing users

To provide a seamless user handling, IFS, AD FS and SAML Session Provider must be configured consistently. See "Users in M3" in M3 Core Installation Planning Guide.

When ION is installed, the user property IFS Person ID is added to IFS. This property must be populated with a unique value for each user, corresponding to the M3 user.

Important: A user that has the Person property set to MVXSECOFR must be configured and able to log on, in order to configure M3 BE.

On a high level, the following steps must be completed for users to get the correct names for accessing M3 BE. Detailed instructions for each step are found in subsequent chapters.

Preparing users

  1. The property IFS Person ID must be configured in IFS for each user. This value must correspond to the field User in 'User.Open' (MNS150) in M3 BE, and can have a maximum length of 10 characters. SeeUser management in Infor Ming.le.
  2. Configure AD FS to forward Person as a claim as described in Install the SAML Session Provider using the Custom ADFS profile.
  3. Configure the SAML Session Provider to use Person claim: http://schemas.infor.com/claims/Person as identity, as described in Install the SAML Session Provider using the Custom ADFS profile.