Filtering Conditions Under the Value Filters tab, click Add to add an attribute value filter, with the

5-66 Oracle Fusion Middleware Administrators Guide for Oracle Identity Federation Example 2 Suppose attribute value mappings are defined as in the example in Section 5.9.2.2, Configuring Attribute Value Mapping . This value filters configuration for attribute title, will yield the following results: ■ Attribute Name: title ■ Condition Operator: and ■ Value Filters: Results: Note that: ■ For a value to be sent, it must not equal mngr, so the value mngr will not be sent. ■ cmts can be sent all filter conditions evaluate to true, and it is mapped to Consulting Member of Technical Staff. ■ The same results would apply for the following value filters:

5.10 Configuring Security and Trust

You use the security and trust pages to configure keystores and certificates for the Oracle Identity Federation server. To access these pages, start from the Oracle Identity Federation drop-down adjacent to the Topology icon, and navigate to Administration, then Security and Trust. This section contains these topics relating to trust configuration: ■ Security and Trust - Wallet ■ Security and Trust - Provider Metadata ■ Security and Trust - Trusted CAs and CRLs Senior Vice-President yes Condition Expression Ignore Case does not equal mngr true ends with mts false Value Send Value? Value Sent mngr no cmts yes Consulting Member of Technical Staff Condition Expression Ignore Case does not equal mngr true regexp mts Value Send Value? Configuring Oracle Identity Federation 5-67

5.10.1 Security and Trust - Wallet

Signing and encryption certificates for this server instance are stored in wallets. Use this page to manage the signing and encryption wallets. The page shows: ■ The type of the signature wallet; for example, PKCS12 or JKS. ■ The alias of the signing key in the wallet. ■ The type of the previous signature wallet; for example, PKCS12 or JKS. ■ The alias of the previous signing key in previous wallet. ■ The type of the encryption wallet; for example, PKCS12 or JKS. ■ The alias of the encryption key in the wallet. ■ The type of the previous encryption wallet; for example, PKCS12 or JKS. ■ The alias of the previous encryption key in previous wallet. Click Update to modify the wallet information. The Update Wallet dialog requires this information for the signing andor encryption wallet: ■ Wallet Location - You can choose an operating system file containing the wallet. ■ Password - Enter the password that was used to encrypt the private key. ■ Key Password - Only required for JKS and custom Java keystores. ■ Signing Key Alias - the alias under which the private key is stored in the wallet.

5.10.2 Security and Trust - Provider Metadata

Use this page to: ■ specify metadata signing requirements ■ generate updated metadata