Persistent Assertion/Subject/NameID from LDAP Attribute

Henry B. Hotz hotz at
Fri Aug 10 00:05:01 EDT 2012

On Aug 9, 2012, at 5:49 AM, Tom Scavo wrote:

> If you want to have the
> latter as a NameID, use:
> urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress
> which is (obviously) pre-V2.0 but the format of choice for e-mail addresses.

If that's what's wanted by a specific SP, shouldn't the <NameIDFormat> metadata make it unnecessary to to put a preference in the RelyingParty?  

Just asking.  Everything's working now, but I need to clean things up a bit.
The opinions expressed in this message are mine,
not those of Caltech, JPL, NASA, or the US Government.
Henry.B.Hotz at, or hbhotz at

More information about the users mailing list