Configuring SAML Claim Rules

Claim rules are a way to write Infor Security rules on objects (claims) that are not part of Landmark Technology.

Claims are SAML objects, created by the authentication source, like AD FS. Any object can be a claim. When a claim is created and attached to a security token, it is then mapped to Infor Security. In Landmark you can write a rule for the claim.

For example, using your SAML provider you could create a claim for a user's company-assigned devices. Then in Landmark you could write a rule that would give the user greater access when they use the company-provided device and less access when they use the personal device.

The general steps for creating a claim and claim rules are:

  • In your SAML provider, create a claim following instructions from your SAML provider.
  • In Landmark, map the claim in the SecurityClaim business class.
  • In Landmark, write a rule for the claim.