PingFederate Server

Specifying an artifact lifetime (SAML 2.0)

When PingFederate sends an artifact to your identity provider’s (IdP’s) single sign-on (SSO) or single logout (SLO) service endpoint, an element in the message indicates how long it should be considered valid.

About this task

On the Artifact Lifetime tab, specify the expiry information in seconds.

You can change the default value to meet your requirements. You should also consider synchronizing your serve clock with your partner’s SAML gateway server. If clocks are not synchronized, you might need to set the artifact lifetime to a higher value to prevent latency issues.

This step applies only to SAML 2.0 connections.

Steps

  • Optional: Override the default value of the Artifact Lifetime field.

    The default value is 60 seconds.

Result

You can update the artifact lifetime if you are editing an existing connection.