SAML Terminology

Posted on 2014-08-27
Last Modified: 2014-08-28
Can I safely assume that a SAML Domain is the SAML Idp and the set of users processed by that IDP in Organization A  (While a second SAML Domain would be a separate SAML IdP and all of the users that IdP manages)

Question by:Anthony Lucia
    1 Comment
    LVL 60

    Accepted Solution

    there is a SAML SP and SAML IdP. Yes if you refer to SAML IdP Domain as SAML Domain

    Maybe below scenario can help

    If you're trying to setup / use Service Provider (SP) Initiated SSO. Taking example,  Salesforce is the SP and you've configured an external IdP to provide authentication.

    SP Initiated Login works on Salesforce with "My Domain". You will need to set up Salesforce for federated authentication on your IdP, by (at least in case of ADFS) importing the metadata which you export from the SSO Settings Screen in Salesforce.

    You will need to set up "My Domain", where you register a custom domain for your org, and there should be a setting in "My Domain" where you choose the authentication provider as the IdP rather than the Salesforce login page.

    You then need to refer to your org by the "My Domain" URL, at which point Salesforce reads this configuration and redirects to the IdP for authentication, passing through a SAML Request. (i.e. login with the custom "My Domain" URL).

    Once you've entered your credentials on the IdP login page, it posts a SAML Assertion to the Salesforce Assertion Consumer Service URL, which identifies the User either by UserName or Federation Id, based on what you've set up in your SSO Settings and lets you in.

    There is another example for instance below - look out for the IdP URL

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    IT, Stop Being Called Into Every Meeting

    Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

    Suggested Solutions

    As a financial services provider, your business is impacted by two of the strictest federal regulations on record: the Sarbanes-Oxley Act and the Gramm-Leach-Bliley Act. Correctly implementing faxing into your organization to provide secure, real-ti…
    When the confidentiality and security of your data is a must, trust the highly encrypted cloud fax portfolio used by 12 million businesses worldwide, including nearly half of the Fortune 500.
    Sending a Secure fax is easy with eFax Corporate ( First, Just open a new email message.  In the To field, type your recipient's fax number You can even send a secure international fax — just include t…
    Here's a very brief overview of the methods PRTG Network Monitor ( offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

    761 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    11 Experts available now in Live!

    Get 1:1 Help Now