1. In the PingFederate administrative console, go to Server Settings > Roles and Protocols.
  2. Ensure that WS-Federation is selected under the IdP role.
  3. Select WS-Trust if you need to support active clients.
    This protocol selection is available only if an STS-enabled license is installed. Screen capture of the Roles and Protocols tab showing the Enable Identity Provider check box selected and the WS-Federate and WS-trust check boxes selected.