Assertion (Section)#

Path: /profiles/profile{id, type}/settings/saml-idp-service/service-providers/service-provider{id}/assertion

Parameters#

NameTypeRequiredDefaultDescription
ttltoken-time-to-liveoptionalThe number of seconds an assertion is be valid. If not set, the profile-setting is used.
audiencemulti-value, stringoptionalThe intended audiences for the assertion. The first element is the default. If none are stipulated, the ID of the service provider will be used as the audience
require-certificate-bindingbooleanoptionalfalseSet this to true to require an assertion issued to this Service Provider to include the Holder Of Key subject confirmation. When this setting is enabled and no certificate was available, an error will be returned. When disabled and no certificate was available, the Holder Of Key subject confirmation will not be included in the assertion. Note that when the profile has set this to true, this setting can not be set to false.

Subsections#

NameTypeDescription
attributes SectionThe attributes that should be included in the SAML assertion. as issued to the service provider upon fulfilling an authentication request.

Was this helpful?