cancel
Showing results for 
Search instead for 
Did you mean: 

SAML based SSO between 2 WAS Java systems

Former Member
0 Kudos

Hi Experts,

We are in the process of demonstrating SAML based SSO betwen 2 WAS Java systems.

2 servers as WAS1 = SAML Identity provider & WAS2 = Receiver / Target

We have performed activities on WAS2 as specified in SAP Help URL: http://help.sap.com/saphelp_nw04/helpdata/EN/94/695b3ebd564644e10000000a114084/frameset.htm

Now for some of the parameters we are unsure what values to be put.

For Source ID: ? How to find hex value of WAS1 server? Using FQDN + Port ?

Now WAS1 will be acting as SAML idnetity provider, but which settings need to be done on this system.

There are many blogs, help available for NON-SAP systems configuration.

But it did not helped much.

Let us know if anybody has implemented such scenario.

regards

Kedar Kulkarni

Accepted Solutions (0)

Answers (4)

Answers (4)

MichaelShea
Advisor
Advisor
0 Kudos

Hi Keldar,

Did you notice the note under the first paragraph of the link you included?

The SAP J2EE Engine accepts SAML assertions for Single Sign-On. However, it cannot act as an SAML authority that issues such assertions.

So if WAS1 is supposed to be an SAP NetWeaver AS Java, SAP does not support such a configuration. At least not in SAML 1.x.

-Michael

Former Member
0 Kudos

Hi Michael,

That's true. But is there any we can configure the WAS system as Identity Provider.

If we consider any other Java based system, it would have settings for SAML.

Similar settings, if we get for WAS system, we can achieve the SSO.

regards

Kedar Kulkarni

MichaelShea
Advisor
Advisor
0 Kudos

I am not an expert on SAML 1.x, but perhaps there is 3rd party software that you can deploy on the AS Java. According to a recent article in SAP Insider, SAP plans to release an identity provider as part of SAP NetWeaver Identity Management 7.1 in Spring 2010. This is a SAML 2.0 product.

-Michael

MichaelShea
Advisor
Advisor
0 Kudos

Disregard.

Edited by: Michael Shea on Feb 3, 2010 1:49 PM

MichaelShea
Advisor
Advisor
0 Kudos

Disregard.

Edited by: Michael Shea on Feb 3, 2010 1:48 PM

MichaelShea
Advisor
Advisor
0 Kudos

Lag in the server caused repeats of my response. Sorry...

Edited by: Michael Shea on Feb 3, 2010 1:48 PM