2V0-621 · Question #34
Which VMware Single Sign-On component issues Security Assertion Markup Language (SAML) tokens?
The correct answer is A. VMware Security Token Service. The VMware Security Token Service (STS) is the SSO subcomponent responsible for issuing SAML tokens after successful authentication.
Question
Which VMware Single Sign-On component issues Security Assertion Markup Language (SAML) tokens?
Options
- AVMware Security Token Service
- BAdministration Server
- CVMware Directory Service
- DIdentity Management Service
How the community answered
(35 responses)- A89% (31)
- B3% (1)
- C3% (1)
- D6% (2)
Why each option
The VMware Security Token Service (STS) is the SSO subcomponent responsible for issuing SAML tokens after successful authentication.
The VMware Security Token Service (STS) is the dedicated component within vCenter Single Sign-On that generates, signs, and issues SAML security assertion tokens to authenticated users. These tokens are then presented by clients to access vSphere services without re-authenticating, forming the core of the SSO trust mechanism.
The Administration Server handles configuration and management of SSO settings but does not issue SAML tokens.
VMware Directory Service (vmdir) is an LDAP-compatible directory that stores SSO configuration and user data, but it does not generate or issue SAML tokens.
The Identity Management Service resolves user identities against configured identity sources but does not produce SAML tokens - that function belongs exclusively to the STS.
Concept tested: VMware SSO component that issues SAML tokens
Source: https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-authentication/GUID-975D39F0-4321-4F27-AFAA-F82B5E449F5B.html
Topics
Community Discussion
No community discussion yet for this question.