36 Identity Federation (SAML) questions from the Security bank, written for Indian campus drives and tech interviews. Every question has a verified answer and an AI-tutor explanation on placd.
Free to start: the 2-minute IT readiness check — six questions and a result.
A.login flow that starts at the IdP, which posts an assertion to the application
B.SP endpoint that receives and processes the SAML response from the IdP
C.service that authenticates users and issues identity assertions to applications
D.application that relies on an IdP to authenticate its users
Answer + AI explanation with Pro
2. Which term means: "service that authenticates users and issues identity assertions to applications"?
Junior
A.SAML signature wrapping
B.Relying party trust
C.Service Provider (SP)
D.Identity Provider (IdP)
Answer + AI explanation with Pro
3. Which statement is correct?
Junior
A.Identity Provider (IdP) — creating a user account on first SSO login using attributes from the assertion
B.Identity Provider (IdP) — configured trust relationship letting an SP accept assertions from a specific IdP
C.Identity Provider (IdP) — service that authenticates users and issues identity assertions to applications
D.Identity Provider (IdP) — login flow that begins at the application, which redirects the user to the IdP
Answer + AI explanation with Pro
4. What is Service Provider (SP)?
Junior
A.SP endpoint that receives and processes the SAML response from the IdP
B.application that relies on an IdP to authenticate its users
C.service that authenticates users and issues identity assertions to applications
D.XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
Answer + AI explanation with Pro
5. Which term means: "application that relies on an IdP to authenticate its users"?
Junior
A.SCIM
B.Service Provider (SP)
C.Identity Provider (IdP)
D.SAML metadata
Answer + AI explanation with Pro
6. Which statement is correct?
Junior
A.Service Provider (SP) — application that relies on an IdP to authenticate its users
B.Service Provider (SP) — standard for automated provisioning and deprovisioning of user identities across systems
C.Service Provider (SP) — login flow that begins at the application, which redirects the user to the IdP
D.Service Provider (SP) — configured trust relationship letting an SP accept assertions from a specific IdP
Answer + AI explanation with Pro
7. What is SAML assertion?
Junior
A.signed XML statement from an IdP conveying a user's identity and attributes
B.SP endpoint that receives and processes the SAML response from the IdP
C.associating a federated external identity with an existing local user account
D.service that authenticates users and issues identity assertions to applications
Answer + AI explanation with Pro
8. Which term means: "signed XML statement from an IdP conveying a user's identity and attributes"?
Junior
A.IdP-initiated SSO
B.Account linking
C.SAML assertion
D.SAML signature wrapping
Answer + AI explanation with Pro
9. Which statement is correct?
Junior
A.SAML assertion — application that relies on an IdP to authenticate its users
B.SAML assertion — service that authenticates users and issues identity assertions to applications
C.SAML assertion — attack injecting a forged assertion while keeping a valid signature to bypass verification
D.SAML assertion — signed XML statement from an IdP conveying a user's identity and attributes
Answer + AI explanation with Pro
10. What is SP-initiated SSO?
Junior
A.signed XML statement from an IdP conveying a user's identity and attributes
B.SP endpoint that receives and processes the SAML response from the IdP
C.login flow that begins at the application, which redirects the user to the IdP
D.application that relies on an IdP to authenticate its users
Answer + AI explanation with Pro
11. Which term means: "login flow that begins at the application, which redirects the user to the IdP"?
Junior
A.SAML metadata
B.SAML assertion
C.SCIM
D.SP-initiated SSO
Answer + AI explanation with Pro
12. Which statement is correct?
Junior
A.SP-initiated SSO — signed XML statement from an IdP conveying a user's identity and attributes
B.SP-initiated SSO — login flow that begins at the application, which redirects the user to the IdP
C.SP-initiated SSO — application that relies on an IdP to authenticate its users
D.SP-initiated SSO — standard for automated provisioning and deprovisioning of user identities across systems
Answer + AI explanation with Pro
13. What is IdP-initiated SSO?
Mid
A.application that relies on an IdP to authenticate its users
B.login flow that starts at the IdP, which posts an assertion to the application
C.login flow that begins at the application, which redirects the user to the IdP
D.associating a federated external identity with an existing local user account
Answer + AI explanation with Pro
14. Which term means: "login flow that starts at the IdP, which posts an assertion to the application"?
Mid
A.SAML metadata
B.SAML assertion
C.IdP-initiated SSO
D.Relying party trust
Answer + AI explanation with Pro
15. Which statement is correct?
Mid
A.IdP-initiated SSO — configured trust relationship letting an SP accept assertions from a specific IdP
B.IdP-initiated SSO — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
C.IdP-initiated SSO — standard for automated provisioning and deprovisioning of user identities across systems
D.IdP-initiated SSO — login flow that starts at the IdP, which posts an assertion to the application
Answer + AI explanation with Pro
16. What is Assertion Consumer Service (ACS)?
Mid
A.attack injecting a forged assertion while keeping a valid signature to bypass verification
B.creating a user account on first SSO login using attributes from the assertion
C.SP endpoint that receives and processes the SAML response from the IdP
D.configured trust relationship letting an SP accept assertions from a specific IdP
Answer + AI explanation with Pro
17. Which term means: "SP endpoint that receives and processes the SAML response from the IdP"?
Mid
A.Assertion Consumer Service (ACS)
B.IdP-initiated SSO
C.Identity Provider (IdP)
D.Account linking
Answer + AI explanation with Pro
18. Which statement is correct?
Mid
A.Assertion Consumer Service (ACS) — SP endpoint that receives and processes the SAML response from the IdP
B.Assertion Consumer Service (ACS) — login flow that starts at the IdP, which posts an assertion to the application
C.Assertion Consumer Service (ACS) — standard for automated provisioning and deprovisioning of user identities across systems
D.Assertion Consumer Service (ACS) — creating a user account on first SSO login using attributes from the assertion
Answer + AI explanation with Pro
19. What is SAML metadata?
Mid
A.login flow that begins at the application, which redirects the user to the IdP
B.configured trust relationship letting an SP accept assertions from a specific IdP
C.standard for automated provisioning and deprovisioning of user identities across systems
D.XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
Answer + AI explanation with Pro
20. Which term means: "XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust"?
Mid
A.SAML metadata
B.IdP-initiated SSO
C.SAML signature wrapping
D.Account linking
Answer + AI explanation with Pro
21. Which statement is correct?
Mid
A.SAML metadata — login flow that begins at the application, which redirects the user to the IdP
B.SAML metadata — attack injecting a forged assertion while keeping a valid signature to bypass verification
C.SAML metadata — signed XML statement from an IdP conveying a user's identity and attributes
D.SAML metadata — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
Answer + AI explanation with Pro
22. What is Just-in-time provisioning?
Mid
A.signed XML statement from an IdP conveying a user's identity and attributes
B.creating a user account on first SSO login using attributes from the assertion
C.standard for automated provisioning and deprovisioning of user identities across systems
D.login flow that begins at the application, which redirects the user to the IdP
Answer + AI explanation with Pro
23. Which term means: "creating a user account on first SSO login using attributes from the assertion"?
Mid
A.SP-initiated SSO
B.IdP-initiated SSO
C.Just-in-time provisioning
D.Identity Provider (IdP)
Answer + AI explanation with Pro
24. Which statement is correct?
Mid
A.Just-in-time provisioning — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
B.Just-in-time provisioning — creating a user account on first SSO login using attributes from the assertion
C.Just-in-time provisioning — signed XML statement from an IdP conveying a user's identity and attributes
D.Just-in-time provisioning — attack injecting a forged assertion while keeping a valid signature to bypass verification
Answer + AI explanation with Pro
25. What is SAML signature wrapping?
Senior
A.attack injecting a forged assertion while keeping a valid signature to bypass verification
B.login flow that begins at the application, which redirects the user to the IdP
C.login flow that starts at the IdP, which posts an assertion to the application
D.application that relies on an IdP to authenticate its users
Answer + AI explanation with Pro
26. Which term means: "attack injecting a forged assertion while keeping a valid signature to bypass verification"?
Senior
A.Assertion Consumer Service (ACS)
B.SAML signature wrapping
C.SP-initiated SSO
D.SAML assertion
Answer + AI explanation with Pro
27. Which statement is correct?
Senior
A.SAML signature wrapping — creating a user account on first SSO login using attributes from the assertion
B.SAML signature wrapping — configured trust relationship letting an SP accept assertions from a specific IdP
C.SAML signature wrapping — associating a federated external identity with an existing local user account
D.SAML signature wrapping — attack injecting a forged assertion while keeping a valid signature to bypass verification
Answer + AI explanation with Pro
28. What is SCIM?
Senior
A.attack injecting a forged assertion while keeping a valid signature to bypass verification
B.associating a federated external identity with an existing local user account
C.configured trust relationship letting an SP accept assertions from a specific IdP
D.standard for automated provisioning and deprovisioning of user identities across systems
Answer + AI explanation with Pro
29. Which term means: "standard for automated provisioning and deprovisioning of user identities across systems"?
Senior
A.SAML signature wrapping
B.IdP-initiated SSO
C.Service Provider (SP)
D.SCIM
Answer + AI explanation with Pro
30. Which statement is correct?
Senior
A.SCIM — standard for automated provisioning and deprovisioning of user identities across systems
B.SCIM — configured trust relationship letting an SP accept assertions from a specific IdP
C.SCIM — application that relies on an IdP to authenticate its users
D.SCIM — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
Answer + AI explanation with Pro
Showing 30 of 36 Identity Federation (SAML) questions — the full set, with answers, explanations and an AI tutor on every question, is inside.
Free to start
Start with a free readiness check
Sign up free for the 2-minute IT readiness check and a scored result. Answers, explanations and the AI tutor on every Identity Federation (SAML) question come with Pro.