SAML Authentication Sequence

The roles in the below sequence include:

  • User: Principal
  • Agent: Web browser
  • Resolver Core Client (Client): Web-based software GUI
  • Resolver Core Web Services (Web Services): Service provider
  • Identity Provider (IdP): ADFS, OneLogin, SiteMinder, CA, etc.

This sequence also assumes that:

  1. The user exists in Core and is a member of at least one organization;
  2. The user is not logged into Core;
  3. SSO SAML configuration has been imported using the IdP metadata and the primary email domain name; and
  4. The user is not logged into the IdP service.