9.1. Installation Overview

This section is a summary of the steps needed to prepare OpenIG to act as a Federation endpoint for your target application.

  • Install the OpenIG Federation .war.

  • Configure OpenIG to log users into the target application. Getting this to work before configuring Federation makes the process much simpler to troubleshoot if anything goes wrong.

  • Add Federation configuration to the OpenIG configuration file.

  • Add the assertion and subject mappings, optional redirect URI and optional logout URI to the Federation configuration.

  • Export the Identity Provider MetaData from the remote Identity Provider or use the meta data from the OpenAM generated fedlet.

  • Import OpenIG metadata to your Identity Provider.