SECURING


Supporting federated login on the Notes client
Federated-identity authentication using the Security Assertion Markup Language (SAML) standard relieves Notes® client users of the need to enter a Notes password through the use of Notes federated login. Users' IDs must be stored in an ID vault whose Domino® server is configured with host names for identity provider (IdP) partnerships. Notes client users' ID file contents are stored in memory on the client after being downloaded from the ID vault.

Before you begin

Tip: The Domino ID vault server participating in federated login typically does not have the Domino Web server configured, but your organization may use such a combination if necessary. If the Domino ID vault server is configured as a Domino Web server, you may be able to use a single SAML partnership for both the Web server and the ID vault server. When the vault server is also a Web server, follow the procedure in the related topic on enabling the Domino Web server to provide SAML authentication, instead of this procedure, to configure the ID vault server.

About this task

Notes federated login requires four components:


Perform the following tasks:
Parent topic: Using Security Assertion Markup Language (SAML) to configure federated-identity authentication
Previous topic: Configuring SAML in Domino

Related tasks
Enabling the Domino Web server to provide SAML authentication