release Name ID as an attribute

Cantor, Scott cantor.2 at osu.edu
Thu Sep 25 12:07:25 EDT 2014


On 9/25/14, 12:01 PM, "Qian, Yi" <yqian at ku.edu> wrote:

>Hello,
> 
>The question is can Shibboleth IdP release NameID in the saml subject and
>attributes at the same time? My impression is I cannot do that after
>looked at the shib wiki.

Yes, you can, but you shouldn't.

> 
>The reason is success factor sent us sample saml response which they has
>NameID in both places
> 
>               <saml2:Attribute Name="NameID"
>NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:unspecified">
>                  
><saml2:AttributeValue>161720</saml2:AttributeValue>
>               </saml2:Attribute>

That's complete nonsense anyway.

-- Scott



More information about the users mailing list