3. Provide the Identity Provider Name, which is a friendly name that appears in the SAML Consumer section 4. Provide the SAML Issuer from the IdP's SAML certificate 5. Provide the SAML Audience, which is the base domain of the IdP 6a. Check SAML Conditions to enable SecureAuth IdP to utilize the NotBefore and NotOnOrAfter SAML conditions to create a validity period during which the SAML assertion is valid 6b. Set the IssueInstant Valid Time to the number of hours from the SAML assertion generation the SAML assertion is valid ** If enabling SAML Conditions, then the IssueInstant Valid Time is not required |
7. Set the Clock Skew to make up for time differences between the IdP and SecureAuth IdP 8. Copy the contents of the certificate and paste it into the Signing Certificate field; or click Choose File and select the IdP's metadata file, which will complete the form 9. Click Add and Save |