Save the changes. Create a Personal Infocard

6-30 Oracle Fusion Middleware Administrators Guide for Oracle Identity Federation When an error occurs, the server returns an error code 404, 401 or 500 showing the Oracle WebLogic Server error page to the user. You can configure Oracle Identity Federation to redirect the user to a custom page based on the error code. Set the string property or urlerrornnn from the serverconfig configuration group to the URL to which the user should be redirected when Oracle Identity Federation returns the error, where nnn is 401, 404, or 500. Thus, you can set the urlerror401, urlerror404, and urlerror500 properties.

6.13.4 Configuring Schema Validation for SSO Protocol Messages

Oracle Identity Federation supports XML schema validation for SSO protocol messages. This feature is implemented with the schemavalidationenabled property; validation is off by default. To enable schema validation, enter the script environment for the Oracle Identity Federation server instance, and set the schemavalidationenabled property to true: setConfigPropertyserverconfig,schemavalidationenabled,true,boolean To disable validation, set the property to false default value. setConfigPropertyserverconfig,schemavalidationenabled,false,boolean

6.14 Additional Federation Data Store Configuration

When Oracle Identity Federation is configured to use an LDAP server or an RDBMS as its federation data store, the server performs various operations to create, locate, update, or delete federation records. A federation record typically consists of the following data: ■ IdP NameID: name identifier data created by the identity provider and used in the SAML messages ■ SP NameID: name identifier data optionally set by the service provider during a Name Identifier Management update operation. If that NameID is set, it is used in SAML messages; otherwise, the IdP NameID is used. Notes: ■ 401 errors occur during Fed SSO operation if the federated SSO fails. ■ 404 errors are raised when the user tries to access one of the Oracle Identity Federation servlets fedidp, fedsp, feduser... and the page is not found. ■ 500 errors occur when fatal exceptions occur at runtime. ■ If the server cannot initialize correctly, Oracle Identity Federation is unable to redirect the user to the urlerror500 URL.