Defining Session Synchronization for A-Select SAML 2.0 Identity Provider

If a user session is active on the service provider, the service provider periodically sends session synchronization to Identity Server to maintain the session. You must configure properties for the session synchronization between service provider and target identity provider.

  1. Click Devices > Identity Servers > Servers > Edit > Liberty or SAML 2.0 > Identity Provider > Options > New.

  2. Select Other in Property Type.

  3. Specify the following values:

    Property Name: config.aselect.sessionsync.enabled

    Property Value: true

  4. For session synchronization, add two options, one to enable the session synchronization and the other to provide the URL to which synchronization message must be sent.

    The session synchronization message is sent from the Access Manager service provider to the A-Select identity provider, in tandem with Access Gateway ESP's activity update. The session synchronization message is sent only if the user session is active at Access Gateway portal, which is the ESP to the Access Manager service provider. If you log in directly to the Access Manager service provider, even if the session is active, the session synchronization message is not sent to the A-Select identity provider.

  5. Click OK.

  6. Update Identity Server.