5.5

Table Of Contents
name="System"
href="https://vcloud.example.com/api/org/99" />
<Link
rel="down"
type="application/vnd.vmware.vcloud.query.queryList+xml"
href="https://vcloud.example.com/api/query" />
<Link
rel="entityResolver"
type="application/vnd.vmware.vcloud.entity+xml"
href="https://vcloud.example.com/api/entity/" />
<Link
rel="down:extensibility"
type="application/vnd.vmware.vcloud.apiextensibility+xml"
href="https://vcloud.example.com/api/extensibility" />
</Session>
This response includes the following link types:
orgList
A link to the list of organizations that you can access. See “Retrieve a List of
Organizations Accessible to You,” on page 49.
org
A link to the user's organization. See “Retrieve a List of Organizations
Accessible to You,” on page 49.
vcloud
A link to administrative objects and operations. See Chapter 6, “Creating and
Managing Organizations,” on page 149
vmwExtension
A link to the vCloud API extensions, accessible to a system administrator.
See Chapter 7, “Managing and Monitoring a Cloud,” on page 235.
queryList
A link to the set of typed queries you can run. See Chapter 9, “Using the
Query Service,” on page 289.
entity
A link to the entity resolver. See “Retrieve an Object as an Entity,” on
page 362.
extensibility
A link to the extensibility framework entry point. See Chapter 11, “vCloud
Director Extension Services,” on page 329.
Create a Login Session Using a SAML Identity Provider
The vCloud API login mechanism authenticates a user and creates a Session object that contains the URLs
from which that user can begin browsing. Users who authenticate to a SAML identity provider must acquire
and process a security assertion from that identity provider, then submit the processed assertion to the
vCloud API login URL.
The vCloud API login mechanism supports Security Assertion Markup Language (SAML) authentication
using two types security assertions:
n
Bearer assertions, which can make no guarantees about message integrity and claimed client identity.
n
Holder-of-key assertions, which guarantee subject identity by including a signature generated with the
subject's private key.
vCloud API Programming Guide
46 VMware, Inc.