map attribute in SP

Qian, Yi yqian at
Fri Jan 20 13:54:35 EST 2017


We set up SimpleSamlPhp proxy in our test environment, and release sn, givenName and mail just for testing. Both IdP and SP are Shibboleth

What I did on SP side is just uncomment sn, givenName, mail in attribute-map.xml file. But SP does not display the attributes, bump up the log level, I see in shibd.log
"skipping unmapped SAML 2.0 Attribute with Name: urn:oid:, Format:urn:oasis:names:tc:SAML:2.0:attrname-format:basic".

I can see the attributes are in the assertion passed through by SimpleSamlPhp proxy,
"Jan 20 17:53:50 simplesamlphp DEBUG [aba6e60d82]       <saml:Attribute Name="urn:oid:" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
Jan 20 17:53:50 simplesamlphp DEBUG [aba6e60d82]         <saml:AttributeValue xsi:type="xs:string">Qian</saml:AttributeValue>
Jan 20 17:53:50 simplesamlphp DEBUG [aba6e60d82]       </saml:Attribute>"

Where did I miss out?

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <>

More information about the users mailing list