https://controller.domain.com:portNumber/saml, where you would use your controller’s hostname. A port number is required. The “Assertion Consumer Service” would be another
URL, for example: https://controller.domain.com:portNumber/saml/assertionConsumerService, again using your controller’s hostname. Once you have generated your SP metadata, save it in XML format and share the file
with the IdP SAML server administrator. 
Shown here is an example of the SAML Authentication Scheme configured for the third-party OpenAM Idp.
Login Button Text enter the preferred text label for the SSO login button that appears on theLogin window.IdP Host URL enter the host of your Identity Provider (obtained from IdP admin).IdP Host Port enter the port number of your Identity Provider (obtained from IdP admin).IdP Login Path enter the location on the Identity Provider to which you must navigate to trigger the SAML authentication (obtained from
IdP admin).IdP Cert enter the certificate used to encrypt messages sent to the IdP, and to validate messages signed by the IdP (obtained from
IdP admin).SAML Server Cert enter the certificate used by the station to sign the messages being sent back to the IdP, and decrypt messages sent by the
IdP.