Enabling SAML Authentication in an Informatica 10.2.x Domain

Enabling SAML Authentication in an Informatica 10.2.x Domain

infasetup updateDomainSamlConfig Command Options

infasetup updateDomainSamlConfig Command Options

Set the SAML options in the infasetup updateDomainSamlConfig command to enable SAML authentication in a domain. Shut down the domain before you run the command.
Specify the identity provider URL as the value for the
-iu
option. The following example shows the command usage:
infasetup updateDomainSamlConfig -saml true -iu https://server.company.com/adfs/ls/ -spid Prod_Domain -cst 240
The following table describes the options and arguments:
Option
Argument
Description
-EnableSaml
-saml
true|false
Required. Set this value to true to enable SAML authentication for supported Informatica web applications within the Informatica domain.
Set this value to false to disable SAML authentication for supported Informatica web applications within the Informatica domain.
-idpUrl
-iu
identity_provider_url
Required if the -saml option is true. Specify the identity provider URL for the domain. You must specify the complete URL string.
-ServiceProviderId
-spid
service_provider_id
Optional. The relying party trust name or the service provider identifier for the domain as defined in Active Directory Federation Services (AD FS).
If you specified "Informatica" as the relying party trust name in AD FS, you do not need to specify a value.
-ClockSkewTolerance
-cst
clock_skew_tolerance_in_seconds
Optional. The allowed time difference between the AD FS host system clock and the master gateway node's system clock.
The lifetime of SAML tokens issued by AD FS by is set according to the AD FS host system clock. The lifetime of a SAML token issued by AD FS is valid if the start time or end time set in the token is within the specified number seconds of the master gateway node's system clock.
Values must be from 0 to 600 seconds. Default is 120 seconds.
See the
Informatica Command Reference
for instructions on using the infasetup updateDomainSamlConfig command.

0 COMMENTS

We’d like to hear from you!