Index
A B C D E F H I K L M N O P R S T U W X
A
- Access Manager domain
-
- adding, 5.5.11
- account linking, 1.1.3
- administration console, 5.2
-
- server configuration tab, 5.3.1
- administrator password, 4.1.4
- affiliation descriptor, 5.3.8.1
- affiliations, 1.2.4, 5.3.8.1
-
- configuring, 5.3.8.3
- display, 5.3.8.5
- runtime behavior, 5.3.8.4, 6.2
- anonymous user, 5.3.3.4, 6.4
- assertion profile
-
- adding, 5.5.5
- Assertion Validity, 5.3.4.1, 5.3.4.3
- assertion validity, 5.3.3.1, 5.3.4.6
- attribute responder, 5.3.4.6
- attribute sharing
-
- components, 5.6.1
- authentication modes, 2.3.1
- auto account linking, 5.3.4.6
B
- bilateral authentication, 2.2.2.3
- binding parameters, 5.3.4.1, 5.3.4.3, 5.3.4.6
- bindings
-
- HTTP Artifact, 1.2.3.2
- HTTP POST, 1.2.3.1
- HTTP redirect, 1.2.3.4
- bulk load utility, 8.2.1
-
- example, 8.2.1.4
- syntax, 8.2.1.4
C
- certificate
-
- self-signed
-
- exporting to SP, 6.3
- certificate repository, 2.1.4.3
- certificate validation, 2.1.4.3
- certificates
-
- and trust, 4.1.1.1
- Circle of Trust, 1.1.3
-
- configuring, 4.2.1
- command-line tools, 8.2
- common domain parameters, 5.3.3.1, 5.3.3.4
- configuration assistants, 8.1
- Configuration Settings
-
- and metadata, 5.1.1
- configuring
-
- Access Manager access policy, 5.6.4.3
- Access Manager plugins, 5.6.3
- Access Manager schemes and policies, 5.6.4
- as an IdP attribute responder, 5.6.6
- as SP attribute requester, 5.6.5
- assertion profiles, 5.5.4
- attribute sharing, 5.6
- attribute sharing authentication, 5.6.4.1
- attribute sharing authorization, 5.6.4.2
- audits and logs, 5.5.3
- certificate store, 5.5.1
- certificate validation store, 5.3.9
- circle of trust, 5.3.7
- connections, 8.3.1
- COT trusted provider, 5.3.7.2
- COT trusted provider attributes, 5.3.7.3
- COT trusted provider NameID formats, 5.3.7.6
- destination mappings, 5.5.8
- domains, 5.5.9
- F5 load balancer, 8.5
- federation data store, 5.4.1
- federation users, 4.2.3
- federations for a provider, 4.2.2
- federations for a user, 4.2.4
- global IdP properties, 5.3.3.1, 5.3.4.1, 5.3.4.6
- global server properties, 5.3.3
- global SP properties, 5.3.3.4, 5.3.5.1
- identity federations, 4.2
- IdM data stores, 5.4
- Liberty 1.1
-
- IdP profiles, 5.3.4.2
- SP properties, 5.3.5.1
- Liberty 1.1 IdP properties, 5.3.4.1
- Liberty 1.2
-
- IdP NameID formats, 5.3.4.5
- IdP properties, 5.3.4.3
- Liberty 1.2 IdP profiles, 5.3.4.4
- Liberty 1.2 SP profiles, 5.3.5.4
- Liberty 1.2 SP properties, 5.3.5.3
- MyDomain, 5.5.10
- protocol-specific IdP properties, 5.3.4
- protocol-specific SP properties, 5.3.5
- SAML 1.x properties, 5.5
- SAML 2.0
-
- IdP properties, 5.3.4.6
- SAML 2.0 IdP profiles, 5.3.4.7
- SAML 2.0 SP attribute requester, 5.3.6
- SAML 2.0 SP NameID formats, 5.3.5.7
- SAML 2.0 SP profiles, 5.3.5.6
- SAML 2.0 SP properties, 5.3.5.5
- server, 5.3
- server configuration tab, 5.3.1
- server properties, 5.3.2
- SSL, 5.6.7, 5.8
- trusted providers, 4.2.1
- user data store, 5.4.2
- connection limits, 8.3.1
- Cookie Lifetime, 5.3.3.1
D
- deconfig tool, 4.4.3
- default IdP, 5.3.3.4
-
- removing from CoT, 5.3.7.1
- deinstallation, 4.4
- deployment
-
- architecture, 2.1
- profiles and bindings, 2.2
- protocols, 2.1.5
- proxy server, 2.1.3
- security, 2.1.4
- server roles, 2.1.1
- topology, 2.1.2
- deployment planning, 4.1.1.1
- deprovisioning, 5.1.2
- Descriptor Validity, 5.3.3.1, 5.3.3.4
- destination domain, 1.1.3
- destination mappings, 5.5.7
-
- modifying, 5.5.8
- domain, 1.1.3
E
- encryption key, 5.5.2
- encryption parameters, 5.3.4.6
F
- F5 load balancer
-
- configuring, 8.5
- federated identity management, 1.1.1
-
- account linking, 1.1.3
- benefits, 1.1.1
- concepts, 1.1.3
- event flow, 1.2.5
- evolution, 1.1.4.2
- use cases, 1.1.2
- federation data
-
- deleting, 4.3.4
- federation data store, 2.4.1
-
- changing, 4.3.1
- connection example, 3.7.1
- federation profiles, 1.2.3
-
- artifact, 1.2.3.2
- federation termination, 1.2.3.8
- global logout, 1.2.3.9
- name identifier, 1.2.3.5
- federation protocols, 1.1.4
- federation record
-
- structure, 5.1.2
- uniqueness, 5.1.2
- federation termination, 5.3.4.1, 5.3.4.3, 5.3.4.6, 5.3.5.1
-
- profiles, 1.2.3.8
- federations for provider
-
- configuring, 4.2.2
- Force SSL, 5.3.2
H
- high availability, 8.4
- HTTPS mode, 5.3.2
I
- identity federations
-
- configuring, 4.2
- identity management
-
- challenges, 1.1.1
- federated, 1.1.1
- identity provider, 1.1.3
-
- selecting at run-time, 5.3.3.4
- IdMBridge, 1.2.2
- IdP
-
- Liberty 1.1, 5.3.4.1
- Liberty 1.2, 5.3.4.3
- IdP mode
-
- protocols, 5.3.3.1
- signed messages, 5.3.3.1
- implementation checklist, 2.6
- Infrastructure
-
- changing, 3.6.1
- installation
-
- advanced, 3.4
- basic, 3.3, 3.3
- overview, 3.2
- ports, 3.3
- prerequisites, 3.1
K
- keystore, 4.1.1.1
L
- LD_ASSUME_KERNEL, A.1.3.3
- Liberty 1.1
-
- IdP profiles, 5.3.4.2
- SP properties, 5.3.5.1
- Liberty 1.2
-
- IdP profiles, 5.3.4.3, 5.3.4.4
- IdP properties, 5.3.4.3
- Liberty Alliance, 1.1.4
- Liberty ID-FF, 1.1.4
-
- 1.1, 1.1.4.4
- 1.2, 1.1.4.5
- Liberty protocol, 1.1.3
- load balancer, 8.5
-
- and monitoring console, 8.5.2
- and SAML 1.x, 8.5.1
- and WS-Federation, 8.5.1
- log files, 4.1.5
- logout service, 5.7
M
- message binding parameters, 5.3.3.1, 5.3.3.4
- Metadata, 5.1.1
-
- properties that affect, 5.1.1
- protocol URLs, 5.1.1
- re-publishing, 5.1.1
- metadata, 4.1.1.1
-
- affected properties, 5.1.1
- metrics, 7.1.1
- monitoring
-
- components, 7.1.2
- data flow, 7.1.3
- features, 7.1
- IdP statistics, 7.2.3
- SP statistics, 7.2.7
- Monitoring Agent, 7.1.2
-
- home page, 7.2.2
- Monitoring Console, 7.2
-
- logging in, 7.2.1
- monitoring console, 7.2
- MyDomain, 5.5.10
N
- NameID formats
-
- determined by IdP, 6.5
- Liberty 1.2, 5.3.4.3
- Liberty 1.2 IdP, 5.3.4.5
- NameID registration, 5.3.4.1, 5.3.4.3
- Non-Oracle Identity Federation domain, 5.5.12
O
- OASIS, 1.1.4
- Oracle Access Manager
-
- authenticating with, 2.3.4
- changing instance, 4.3.5
- deleting policy objects, 4.3.6
- deploying with, 3.7.2
- Oracle HTTP Server
-
- as proxy server, 8.6
- Oracle HTTP Sever
-
- tuning, 8.3.3
- Oracle Identity Federation, 1.2
-
- administration console, 5.2
-
- logging in, 4.1.2
- architecture, 1.2.2
- benefits, 1.2.1
- installation requirements, 2.5
- log files, 4.1.5
- start and stop server, 4.1.3
- uninstallation, 4.4
- Oracle Single Sign-On
-
- authenticating with, 2.3.5
- deploying with, 3.7.1
- testing deployment, 3.7.1.1
P
- performance
-
- and JDBC connection settings, 8.3.2
- and Oracle HTTP Server settings, 8.3.3
- tuning, 8.3
- PKI, 4.1.1.1
- principal, 1.1.3
- profiles
-
- artifact
-
- request processing, 2.2.2.1
- security, 2.2.2.3
- using, 2.2.2.1
- with proxy, 2.2.2.1
- attribute sharing, 1.2.3.6
-
- using, 2.2.2.4
- choosing, 2.2.2
- federation termination, 1.2.3.8
- HTTP redirect, 1.2.3.4
- logout, 1.2.3.9
- passive requester, 1.2.3.7
- POST, 1.2.3.1
-
- request processing, 2.2.2.2
- security, 2.2.2.3
- using, 2.2.2.2
- with proxy, 2.2.2.2
- WS-Federation
-
- using, 2.2.2.5
- Provider ID, 5.3.3.4
- proxy server
-
- and Oracle Access Manager, 8.6
- and Oracle Single Sign-On, 8.6, 8.6
- setting up, 8.6
R
- reassociation, 3.6.1, 4.3
- reauthentication, 5.3.3.1, 5.3.4.3, 5.3.4.6
- redundant LDAP servers, 8.4.3.1
- reinstallation, 4.4.6
S
- SAML, 1.1.4
-
- assertions, 1.1.4.1
- authentication example, 1.1.4.6
- profiles, 1.1.4.1
- protocol bindings, 1.1.4.1
- request and response cycle, 1.1.4.1
- request-response cycle, 1.1.4.1
- SAML 1.x
-
- service URLs, 5.5.13
- SAML 2.0, 1.1.4.6
-
- auto account linking, 5.3.4.6
- binding parameters, 5.3.4.6
- encryption parameters, 5.3.4.6
- IdP NameID formats, 5.3.4.8
- IdP profiles, 5.3.4.6, 5.3.4.7
- IdP properties, 5.3.4.6, 5.3.4.6
- NameID formats, 5.3.4.6
- timeout parameters, 5.3.4.6
- SAML attribute sharing profile, 5.6
- SAML security considerations, 2.2.2.3
- security considerations, 2.2.2.3
- Server Clock Drift, 5.3.3.1, 5.3.3.4, 5.3.4.1, 5.3.4.3, 5.3.4.6
- Server Hostname, 5.3.2
- Server Port, 5.3.2
- service provider, 1.1.3
- service URLs, 5.5.13
- session
-
- active period, 5.3.2
- Session Data Cleanup Interval, 5.3.2
- Session Timeout, 5.3.2
- single sign-on, 1.1
- SmartMarks, 5.5.10
- SmartWalls, 5.5.8.1
- SOAP Port, 5.3.2
- SP
-
- Liberty 1.1, 5.3.5.1
- SP mode
-
- protocols, 5.3.3.4
- signed messages, 5.3.3.4
- SSL
-
- and attribute requesters, 5.6.3
- and PKI, 4.1.1.1
- certificate authentication, 5.8.3
- configuring for server, 3.4.1, 5.8
- connections to remote providers, 5.8.1
- enabling for server, 5.3.2
- to data stores, 5.8.2
- staticports.ini, 3.4
T
- timeout parameters, 5.3.3.1, 5.3.4.1, 5.3.4.6
- timeout properties, 5.3.4.3
- transient data store, 2.4.3
-
- RDBMS
-
- changing, 4.3.3
- JDBC connection settings, 8.3.2
- sharing RDBMS, 3.4
- transient/one-time identifier, 6.4
- troubleshooting
-
- 404 error, A.1.5.1
- AccessGate permission error, A.1.3.1
- back-ends with same cookie domain, A.1.3.4
- bookmarked login page, A.1.2.2
- bookmarked resource, A.1.5.3
- changed IdP, A.1.5.2
- crash with Oracle Access Manager back-end, A.1.3.3
- file descriptor error, A.1.4.1
- incorrect login page, A.1.2.1
- LD_ASSUME_KERNEL, A.1.3.3
- logout displays last page visited, A.1.1.2
- No JSESSIONID cookie error, A.1.1.3
- non-ASCII AccessGate ID, A.1.3.2
- Operating System configuration, A.1.4
- Oracle Access Manager configuration, A.1.3
- Oracle Identity Federation configuration, A.1.1
- Oracle Single Sign-On configuration, A.1.2
- reissue SAML 1.x URL after timeout, A.1.2.3
- runtime SSO issues, A.1.5
- unable to log into console, A.1.6.1
- unknown requester error, A.1.1.1
U
- uninstall tool, 8.2.3
- Unknown Conditions, 5.3.3.4
- unsolicited relay state, 5.3.7.2
- User Consent, 5.3.3.1, 5.3.3.4
-
- example, 5.3.3.4, 5.3.7.2
- example page, 5.3.3.1
- user data store, 2.4.2
-
- changing, 4.3.2
- connection data, 2.4.2
- connection example, 3.7.1
- user records
-
- basic data, 5.1.2
- deprovisioning, 5.1.2
- federation data, 5.1.2
- synchronizing, 5.1.2
- users, 4.2.3
W
- WS-Federation, 1.1.4.7
-
- service URLs, 5.5.13
X
- X.509 certificates, 4.1.1.1