Creating and exporting claims for AD FS
This procedure configures the claims (or credentials) that the relying party should accept from a user attempting to log in.
-
Run the secadm utility.
From a command window on theInfor Landmark Technology server, type
secadm -m
If prompted, supply the password.
- From the main secadm menu, select "Manage WS Federation Settings".
- From the sub-menu, select "Manage WS Federation Claims".
- From the next sub-menu, select "Add a claim".
-
Follow the prompts to add each of the Claim Name, Claim Value pairs in the table. Type each exactly as shown.
Claim Name Claim Value userid
$ACTOR-Actor
role
$ACTOR-Roles
GlobalLogoutURL
$COMMON-GlobalLogoutURL
LocalLogoutResponseURL
$COMMON-LocalLogoutResponseURL
SessionTimeout
$COMMON-SessionTimeout
TimeoutRequestAssertionURL
$COMMON-TimeoutRequestAssertionURL
- Select "Back" to return to the "Manage WS Federation Settings" sub-menu.
- Select "Manage WS Federation Certificate."
-
From the next sub-menu, select "Create certificate for WS Federation."
The message, "Successfully created certificate for WS Federation" appears.
- When you are finished adding the certificate, select "Back" to return to the main menu of secadm.