Recent experience with Power DMS integration?

Nate Klingenstein ndk at signet.id
Tue Nov 13 15:44:23 EST 2018


Paul,

>  I'm not clear on exactly what they're looking for regarding the "Sign In URL".

I assume they're looking for your SingleSignOnService endpoint.  Your guess on binding is as good as mine; they mention POST, but I assume they mean that for the ACS URL, and would guess redirect.

> There is also no mention of required attributes, so it seems even if this was configured as instructed and authentication was successful, the application would know somebody logged in, but have no idea who?

The WS-Fed documentation indicates they'll be looking at the NameID and matching it against some extrinsically provisioned username, so I'd wager they're doing the same with SAML.  I'd guess they're not checking the format.

https://powerdms.force.com/success/s/article/Configuring-Microsoft-ADFS-2-0-for-PowerDMS-Federation?language=en_US

They also list a number of other attributes that have correlates in SAML, but it's anyone's guess as to what those names are on the wire...

So, yes, the documentation is... lacking.  Unless they're responsive and supportive, I would start bombarding them with varied assertions and see what happens.

Take care,
Nate.


More information about the users mailing list