The user initiates an SSO transaction to Salesforce CRM.
Login session information is retrieved by an IdP Adapter running in PingFederate. The IdP can be any authentication service, including an LDAP directory, an IdM system, or a custom application. See the Ping Identity Web site (www.pingidentity.com) for a full list of IdP Integration Kits available for PingFederate.
The IdP Adapter passes user attributes to PingFederate, which generates a SAML assertion and sends it to the Salesforce SSO processing site for SAML.