non-standard OIDC scopes

Liam Hoekenga liamr at umich.edu
Mon Jun 8 20:30:16 UTC 2020


On Mon, Jun 8, 2020 at 3:02 PM Wessel, Keith <kwessel at illinois.edu> wrote:

> Adding custom scopes, as I understand it, is not allowed.
>

In what sense?  Philosophically? Because it is technically possible..

    <AttributeFilterPolicy id="oidc_edumember">
        <PolicyRequirementRule xsi:type="oidcext:OIDCScope"
value="edumember" />
        <AttributeRule attributeID="isMemberOf">
            <PermitValueRule xsi:type="ANY" />
        </AttributeRule>
    </AttributeFilterPolicy>

Liam
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20200608/17c27a27/attachment.htm>


More information about the users mailing list