Token processor (IdP) processing overview
The following figure illustrates how PingFederate and the Token Processor interact with the CoreBlox Token Service (CTS):
Steps
-
A Web Service Client (WSC) sends a Request Security Token (RST) message containing a CoreBlox session token to the PingFederate Security Token Service (STS) IdP endpoint.
-
The CoreBlox Token Processor validates and authorizes the token from the WSC with the CTS and returns a valid token back to the Token Processor.
-
PingFederate STS embeds the mapped attributes in a SAML assertion wrapped in a Request Security Token Response (RSTR) back to the WSC.
-
The SAML assertion is sent to the Web Service Provider (WSP).