This topic describes how to create an identity provider (IdP). You must create an IdP before you use role-based Single Sign On (SSO).


  1. Log on to the RAM console.
  2. In the left-side navigation pane, click SSO.
  3. On the Role-based SSO tab, click Create IdP.
  4. Enter an IdP name and description.
  5. In the Metadata File section, click Upload to upload a metadata file.
    Note The metadata file, usually in XML format, is provided by an IdP. It contains the logon service address of the IdP, the public key for verifying the SAML assertion, and the assertion format.
  6. Click OK.