ADFS to Shibboleth

Cantor, Scott cantor.2 at osu.edu
Thu Jan 2 16:59:39 EST 2014


On 1/2/14, 4:44 PM, "Mercer, Keith" <keith.mercer at ndus.edu> wrote:

>I thought could change query= to employeeID but that didn¹t see to work.
>I am thinking I would need to do something with the iod¹s also.  Any
>assistance would be helpful.

The OID is the name of the attribute when using the SAML profile for LDAP
attributes properly. It's just a URI string in the rule, and that's the
correct URI for employeeNumber.

The rest is up to ADFS. I didn't find it to be very usable when it comes
to debugging attribute behavior with those undocumented scripting rules,
at least when it was first released.

-- Scott




More information about the users mailing list