Page created: 6 Nov 2019
|
Page updated: 25 Mar 2020
This procedure configures the PingFederate Server as the identity provider for PingDirectory Server.
Note: Before starting, download the LDAPS certificate from PingDirectory Server.
All other steps are performed on the PingFederate server. For more information,
refer to
PingDirectory Server Administration Guide.
- Click .
- Under Enable OAuth 2.0 Authorization Server (AS) role, select OpenID Connect.
- Upload the PingDirectory Server LDAPS certificate in Security > Trusted CAs.
-
Add an LDAP datastore in System > Datastores. Specify:
- The PingDirectory Server host name and LDAPS port.
- Select Use LDAPS.
- Under Advanced, clear the Verify LDAPS hostname option.
- Click Next.
- Click Done.
- Click Save.
-
Create the HTML form IdP Adapter and Password Credential Validator
that is used to authenticate users against PingDirectory Server:
- Enable session tracking in Identity Provider > Sessions, and select the Track adapter session for logout and Enable authentication sessions for all sources options.
- Click Save.