Table of Contents

Search

  1. About the Security Guide
  2. Introduction to Informatica Security
  3. User Authentication
  4. LDAP Authentication
  5. Kerberos Authentication
  6. SAML Authentication for Informatica Web Applications
  7. Domain Security
  8. Security Management in Informatica Administrator
  9. Users and Groups
  10. Privileges and Roles
  11. Permissions
  12. Audit Reports
  13. Appendix A: Command Line Privileges and Permissions
  14. Appendix B: Custom Roles

Security Guide

Security Guide

SAML Authentication Process

SAML Authentication Process

Informatica web applications and the identity provider exchange authentication information to enable SAML authentication in an Informatica domain.
The following steps describe the basic SAML authentication flow:
  1. A user accesses an Informatica web application.
  2. The user selects the security domain containing LDAP user accounts used for SAML authentication on the application log in page, and then clicks the log in button.
    If the user selects the native security domain, the user provides a user name and password and logs in to the application.
  3. Based on the identity provider configuration, the user is prompted to provide the credentials required for first time authentication.
  4. The identity provider validates the user's credentials and creates a session for the user.
    The identity provider also validates the target web application URL, and then redirects the user to the web application with a SAML token containing the user's identity information.
  5. The application validates the SAML token and user identity information, creates a user session, and then completes the user log in process.
The existing user session in the browser is used for subsequent authentication. To access another Informatica web application configured to use SAML authentication, the user selects the LDAP security domain on the application log in page. The user does not need to supply a user name or password.
The user remains logged in to all Informatica web applications that are running in the same browser session. However, if the user logs out of an Informatica web application, the user is also logged out of other Informatica web applications running in the same browser session.

0 COMMENTS

We’d like to hear from you!