The most important to know about WCF integration (4 of 5)
When using X509 for wsFederation or ws2007Federation
Deploy the following to DP device
WCF SAML STS ’s public cert
The private key and public cert for WCF service, which is DP.
The WCF client identity is proven by the SAML token.
Create crypto certificate object for the SAML STS.
Optionally create valcred object for SAML STS too.
Create crypto key, idcred objects for service
Include the following as WS-SP parameters, needed for the specific policy domain only.
Set “interop with” with value ‘microsoft’
Optionally set the “Verify ValCred” object with the STS valcred..
DataPower WCF integration
© 2010 IBM Corporation
Page 16 of 19