Support for X509SubjectName Name ID

Cantor, Scott cantor.2 at osu.edu
Thu May 14 14:08:34 UTC 2020


> You have to give it a source of data if you want to use that particular generator, whether it exists already or you have to
> create something new. If you want to use uid, use uid. Either way it has to exist of course.

(and be released to that SP)

If you really want to use unfiltered attributes as a source that's an optional flag you'd have to enable. I wouldn't do that, it's best as a documentation aid if nothing else to release the underlying data to the SP if it's going to be passed through via NameID.

Only the persistent generator really makes much sense to operate on unfiltered data since it's a transform that would not expose the original source.

-- Scott




More information about the users mailing list