1. In the PingFederate Administrative console, click the System tab and then click Protocol Settings. Click the Roles & Protocols tab.
  2. Select the WS-Trust check box for IDP roles. Click Save.
  3. On the Identity Provider tab, click Token Processors and then click Create New Instance.
  4. Enter the appropriate values in the Instance Name and Instance ID fields. From the Type menu, select Username Token Processor. Click Next.
  5. From the Password Credential Validator Instance menu, select your password credential validator instance. Click Next.
  6. Click Next and Done until you complete the Token Processor Instance configuration.
    Note: Only the username attribute is required in the Contract.