Skip Headers
Oracle® Identity Federation Administrator's Guide
10g (10.1.4.0.1)

Part Number B25355-01
Go to Documentation Home
Home
Go to Book List
Book List
Go to Table of Contents
Contents
Go to Master Index
Master Index
Go to Feedback page
Contact Us

Go to previous page
Previous
View PDF

Index

A  B  C  D  E  F  H  I  K  L  M  N  O  P  R  S  T  U  W  X 

A

Access Manager domain
adding, 5.5.11
account linking, 1.1.3
administration console, 5.2
server configuration tab, 5.3.1
administrator password, 4.1.4
affiliation descriptor, 5.3.8.1
affiliations, 1.2.4, 5.3.8.1
configuring, 5.3.8.3
display, 5.3.8.5
runtime behavior, 5.3.8.4, 6.2
anonymous user, 5.3.3.4, 6.4
assertion profile
adding, 5.5.5
Assertion Validity, 5.3.4.1, 5.3.4.3
assertion validity, 5.3.3.1, 5.3.4.6
attribute responder, 5.3.4.6
attribute sharing
components, 5.6.1
authentication modes, 2.3.1
auto account linking, 5.3.4.6

B

bilateral authentication, 2.2.2.3
binding parameters, 5.3.4.1, 5.3.4.3, 5.3.4.6
bindings
HTTP Artifact, 1.2.3.2
HTTP POST, 1.2.3.1
HTTP redirect, 1.2.3.4
bulk load utility, 8.2.1
example, 8.2.1.4
syntax, 8.2.1.4

C

certificate
self-signed
exporting to SP, 6.3
certificate repository, 2.1.4.3
certificate validation, 2.1.4.3
certificates
and trust, 4.1.1.1
Circle of Trust, 1.1.3
configuring, 4.2.1
command-line tools, 8.2
common domain parameters, 5.3.3.1, 5.3.3.4
configuration assistants, 8.1
Configuration Settings
and metadata, 5.1.1
configuring
Access Manager access policy, 5.6.4.3
Access Manager plugins, 5.6.3
Access Manager schemes and policies, 5.6.4
as an IdP attribute responder, 5.6.6
as SP attribute requester, 5.6.5
assertion profiles, 5.5.4
attribute sharing, 5.6
attribute sharing authentication, 5.6.4.1
attribute sharing authorization, 5.6.4.2
audits and logs, 5.5.3
certificate store, 5.5.1
certificate validation store, 5.3.9
circle of trust, 5.3.7
connections, 8.3.1
COT trusted provider, 5.3.7.2
COT trusted provider attributes, 5.3.7.3
COT trusted provider NameID formats, 5.3.7.6
destination mappings, 5.5.8
domains, 5.5.9
F5 load balancer, 8.5
federation data store, 5.4.1
federation users, 4.2.3
federations for a provider, 4.2.2
federations for a user, 4.2.4
global IdP properties, 5.3.3.1, 5.3.4.1, 5.3.4.6
global server properties, 5.3.3
global SP properties, 5.3.3.4, 5.3.5.1
identity federations, 4.2
IdM data stores, 5.4
Liberty 1.1
IdP profiles, 5.3.4.2
SP properties, 5.3.5.1
Liberty 1.1 IdP properties, 5.3.4.1
Liberty 1.2
IdP NameID formats, 5.3.4.5
IdP properties, 5.3.4.3
Liberty 1.2 IdP profiles, 5.3.4.4
Liberty 1.2 SP profiles, 5.3.5.4
Liberty 1.2 SP properties, 5.3.5.3
MyDomain, 5.5.10
protocol-specific IdP properties, 5.3.4
protocol-specific SP properties, 5.3.5
SAML 1.x properties, 5.5
SAML 2.0
IdP properties, 5.3.4.6
SAML 2.0 IdP profiles, 5.3.4.7
SAML 2.0 SP attribute requester, 5.3.6
SAML 2.0 SP NameID formats, 5.3.5.7
SAML 2.0 SP profiles, 5.3.5.6
SAML 2.0 SP properties, 5.3.5.5
server, 5.3
server configuration tab, 5.3.1
server properties, 5.3.2
SSL, 5.6.7, 5.8
trusted providers, 4.2.1
user data store, 5.4.2
connection limits, 8.3.1
Cookie Lifetime, 5.3.3.1

D

deconfig tool, 4.4.3
default IdP, 5.3.3.4
removing from CoT, 5.3.7.1
deinstallation, 4.4
deployment
architecture, 2.1
profiles and bindings, 2.2
protocols, 2.1.5
proxy server, 2.1.3
security, 2.1.4
server roles, 2.1.1
topology, 2.1.2
deployment planning, 4.1.1.1
deprovisioning, 5.1.2
Descriptor Validity, 5.3.3.1, 5.3.3.4
destination domain, 1.1.3
destination mappings, 5.5.7
modifying, 5.5.8
domain, 1.1.3

E

encryption key, 5.5.2
encryption parameters, 5.3.4.6

F

F5 load balancer
configuring, 8.5
federated identity management, 1.1.1
account linking, 1.1.3
benefits, 1.1.1
concepts, 1.1.3
event flow, 1.2.5
evolution, 1.1.4.2
use cases, 1.1.2
federation data
deleting, 4.3.4
federation data store, 2.4.1
changing, 4.3.1
connection example, 3.7.1
federation profiles, 1.2.3
artifact, 1.2.3.2
federation termination, 1.2.3.8
global logout, 1.2.3.9
name identifier, 1.2.3.5
federation protocols, 1.1.4
federation record
structure, 5.1.2
uniqueness, 5.1.2
federation termination, 5.3.4.1, 5.3.4.3, 5.3.4.6, 5.3.5.1
profiles, 1.2.3.8
federations for provider
configuring, 4.2.2
Force SSL, 5.3.2

H

high availability, 8.4
HTTPS mode, 5.3.2

I

identity federations
configuring, 4.2
identity management
challenges, 1.1.1
federated, 1.1.1
identity provider, 1.1.3
selecting at run-time, 5.3.3.4
IdMBridge, 1.2.2
IdP
Liberty 1.1, 5.3.4.1
Liberty 1.2, 5.3.4.3
IdP mode
protocols, 5.3.3.1
signed messages, 5.3.3.1
implementation checklist, 2.6
Infrastructure
changing, 3.6.1
installation
advanced, 3.4
basic, 3.3, 3.3
overview, 3.2
ports, 3.3
prerequisites, 3.1

K

keystore, 4.1.1.1

L

LD_ASSUME_KERNEL, A.1.3.3
Liberty 1.1
IdP profiles, 5.3.4.2
SP properties, 5.3.5.1
Liberty 1.2
IdP profiles, 5.3.4.3, 5.3.4.4
IdP properties, 5.3.4.3
Liberty Alliance, 1.1.4
Liberty ID-FF, 1.1.4
1.1, 1.1.4.4
1.2, 1.1.4.5
Liberty protocol, 1.1.3
load balancer, 8.5
and monitoring console, 8.5.2
and SAML 1.x, 8.5.1
and WS-Federation, 8.5.1
log files, 4.1.5
logout service, 5.7

M

message binding parameters, 5.3.3.1, 5.3.3.4
Metadata, 5.1.1
properties that affect, 5.1.1
protocol URLs, 5.1.1
re-publishing, 5.1.1
metadata, 4.1.1.1
affected properties, 5.1.1
metrics, 7.1.1
monitoring
components, 7.1.2
data flow, 7.1.3
features, 7.1
IdP statistics, 7.2.3
SP statistics, 7.2.7
Monitoring Agent, 7.1.2
home page, 7.2.2
Monitoring Console, 7.2
logging in, 7.2.1
monitoring console, 7.2
MyDomain, 5.5.10

N

NameID formats
determined by IdP, 6.5
Liberty 1.2, 5.3.4.3
Liberty 1.2 IdP, 5.3.4.5
NameID registration, 5.3.4.1, 5.3.4.3
Non-Oracle Identity Federation domain, 5.5.12

O

OASIS, 1.1.4
Oracle Access Manager
authenticating with, 2.3.4
changing instance, 4.3.5
deleting policy objects, 4.3.6
deploying with, 3.7.2
Oracle HTTP Server
as proxy server, 8.6
Oracle HTTP Sever
tuning, 8.3.3
Oracle Identity Federation, 1.2
administration console, 5.2
logging in, 4.1.2
architecture, 1.2.2
benefits, 1.2.1
installation requirements, 2.5
log files, 4.1.5
start and stop server, 4.1.3
uninstallation, 4.4
Oracle Single Sign-On
authenticating with, 2.3.5
deploying with, 3.7.1
testing deployment, 3.7.1.1

P

performance
and JDBC connection settings, 8.3.2
and Oracle HTTP Server settings, 8.3.3
tuning, 8.3
PKI, 4.1.1.1
principal, 1.1.3
profiles
artifact
request processing, 2.2.2.1
security, 2.2.2.3
using, 2.2.2.1
with proxy, 2.2.2.1
attribute sharing, 1.2.3.6
using, 2.2.2.4
choosing, 2.2.2
federation termination, 1.2.3.8
HTTP redirect, 1.2.3.4
logout, 1.2.3.9
passive requester, 1.2.3.7
POST, 1.2.3.1
request processing, 2.2.2.2
security, 2.2.2.3
using, 2.2.2.2
with proxy, 2.2.2.2
WS-Federation
using, 2.2.2.5
Provider ID, 5.3.3.4
proxy server
and Oracle Access Manager, 8.6
and Oracle Single Sign-On, 8.6, 8.6
setting up, 8.6

R

reassociation, 3.6.1, 4.3
reauthentication, 5.3.3.1, 5.3.4.3, 5.3.4.6
redundant LDAP servers, 8.4.3.1
reinstallation, 4.4.6

S

SAML, 1.1.4
assertions, 1.1.4.1
authentication example, 1.1.4.6
profiles, 1.1.4.1
protocol bindings, 1.1.4.1
request and response cycle, 1.1.4.1
request-response cycle, 1.1.4.1
SAML 1.x
service URLs, 5.5.13
SAML 2.0, 1.1.4.6
auto account linking, 5.3.4.6
binding parameters, 5.3.4.6
encryption parameters, 5.3.4.6
IdP NameID formats, 5.3.4.8
IdP profiles, 5.3.4.6, 5.3.4.7
IdP properties, 5.3.4.6, 5.3.4.6
NameID formats, 5.3.4.6
timeout parameters, 5.3.4.6
SAML attribute sharing profile, 5.6
SAML security considerations, 2.2.2.3
security considerations, 2.2.2.3
Server Clock Drift, 5.3.3.1, 5.3.3.4, 5.3.4.1, 5.3.4.3, 5.3.4.6
Server Hostname, 5.3.2
Server Port, 5.3.2
service provider, 1.1.3
service URLs, 5.5.13
session
active period, 5.3.2
Session Data Cleanup Interval, 5.3.2
Session Timeout, 5.3.2
single sign-on, 1.1
SmartMarks, 5.5.10
SmartWalls, 5.5.8.1
SOAP Port, 5.3.2
SP
Liberty 1.1, 5.3.5.1
SP mode
protocols, 5.3.3.4
signed messages, 5.3.3.4
SSL
and attribute requesters, 5.6.3
and PKI, 4.1.1.1
certificate authentication, 5.8.3
configuring for server, 3.4.1, 5.8
connections to remote providers, 5.8.1
enabling for server, 5.3.2
to data stores, 5.8.2
staticports.ini, 3.4

T

timeout parameters, 5.3.3.1, 5.3.4.1, 5.3.4.6
timeout properties, 5.3.4.3
transient data store, 2.4.3
RDBMS
changing, 4.3.3
JDBC connection settings, 8.3.2
sharing RDBMS, 3.4
transient/one-time identifier, 6.4
troubleshooting
404 error, A.1.5.1
AccessGate permission error, A.1.3.1
back-ends with same cookie domain, A.1.3.4
bookmarked login page, A.1.2.2
bookmarked resource, A.1.5.3
changed IdP, A.1.5.2
crash with Oracle Access Manager back-end, A.1.3.3
file descriptor error, A.1.4.1
incorrect login page, A.1.2.1
LD_ASSUME_KERNEL, A.1.3.3
logout displays last page visited, A.1.1.2
No JSESSIONID cookie error, A.1.1.3
non-ASCII AccessGate ID, A.1.3.2
Operating System configuration, A.1.4
Oracle Access Manager configuration, A.1.3
Oracle Identity Federation configuration, A.1.1
Oracle Single Sign-On configuration, A.1.2
reissue SAML 1.x URL after timeout, A.1.2.3
runtime SSO issues, A.1.5
unable to log into console, A.1.6.1
unknown requester error, A.1.1.1

U

uninstall tool, 8.2.3
Unknown Conditions, 5.3.3.4
unsolicited relay state, 5.3.7.2
User Consent, 5.3.3.1, 5.3.3.4
example, 5.3.3.4, 5.3.7.2
example page, 5.3.3.1
user data store, 2.4.2
changing, 4.3.2
connection data, 2.4.2
connection example, 3.7.1
user records
basic data, 5.1.2
deprovisioning, 5.1.2
federation data, 5.1.2
synchronizing, 5.1.2
users, 4.2.3

W

WS-Federation, 1.1.4.7
service URLs, 5.5.13

X

X.509 certificates, 4.1.1.1