You must configure at least one processor in order to set up an STS connection or a token-to-token mapping.

For more information about WS-Trust, see Web services standards.

PingFederate comes bundled with the following token processors:

  • JWT Token Processor
  • Kerberos Token Processor
  • OAuth Bear Token Processor
  • SAML 1.1 Token Processor
  • SAML 2.0 Token Processor
  • Username Token Processor

You can deploy additional token translators from Ping Identity website.

  1. Go to Authentication > Token Exchange > Token Processors.
  2. In the Token Processors window, choose from the following options.
    OptionDescription
    Create New Instance Configure a new instance
    <Existing instance link> under Instance Name Modify an existing instance
    Check Usage Review the usage of an existing instance
    Delete or Undelete Remove an existing instance or cancel the removal
    Note:

    By default, PingFederate automatically checks multi-connection errors whenever you access this window. This verifies that configured connections are not adversely affected by changes made here.

    If you experience noticeable delays in accessing this window, you can disable automatic connection validation. Go to System > Server > General Settings.