LL::NG can act as an SAML 2.0 Identity Provider, that can allow to federate LL::NG with:
See SAML service configuration chapter.
Go in General Parameters
» Issuer modules
» SAML
and configure:
On
.^/saml/
unless you have change SAML end points suffix in SAML service configuration.1
to always allow.
$authenticationLevel > 2
After configuring SAML Service, you can export metadata to your partner Service Provider.
They are available at the EntityID URL, by default: http://auth.example.com/saml/metadata.
In the Manager, select node SAML service providers and click on New service provider:
The SP name is asked, enter it and click OK.
Now you have access to the SP parameters list.
You must register SP metadata here. You can do it either by uploading the file, or get it from SP metadata URL (this require a network link between your server and the SP).
For each attribute, you can set:
These options override service signature options (see SAML service configuration).