Configuring Shibboleth for Zoom
IAM David Bantz
dabantz at alaska.edu
Sat Aug 22 20:19:44 UTC 2020
There's a lot of flexibility in configuring SAML attributes on the Zoom
side to accomplish what you need.
We send ePPN, but also, as separate attributes, a canonical institutional
email address, displayName, and attributes indicating institutional
affiliation and role.
David St. Pierre Bantz
On Fri, Aug 21, 2020 at 6:42 PM Lohr, Donald A - lohrda <lohrda at jmu.edu>
wrote:
> Referring to this URL:
>
>
>
> https://support.zoom.us/hc/en-us/articles/201363003-Getting-started-with-SSO
>
>
> ...it states the following:
>
>
> First, configure your IdP to send us the following
>
> - Any unique identifier linked to nameID such as eduPersonTargetedID,
> persistentID, or mail
> - (Optional) Accepted attributes are email (urn:oid:0.9.2342.19200300.
> 100.1.3), sn (urn:oid:2.5.4.4), and givenName (urn:oid:2.5.4.42).
>
>
> Our plan would be to configure Shibboleth to set the nameID for Zoom to
> not be a user's email address. We want to use a better unique & never
> changing attribute, the user's eduPersonUniqueId attribute value. We will
> also send Zoom a user's mail, givenname and sn attribute values.
>
>
> Is anyone's Shibboleth configuration for Zoom using something other than
> email as the nameID value? If so have you encountered any issues with
> nameID not set as a users email value? Especially with SSO login, the
> emailing of or accepting invitations or using the Canvas LTI Pro component.
>
> --
> D o n a l d L o h r
> I n f o r m a t i o n S y s t e m s
> J a m e s M a d i s o n U n i v e r s i t y
> 5 4 0 . 5 6 8 . 3 7 3 0
> --
> For Consortium Member technical support, see
> https://wiki.shibboleth.net/confluence/x/coFAAg
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20200822/3a748b9f/attachment.htm>
More information about the users
mailing list