AW: Problem with urn:oasis:names:tc:SAML:2.0:nameid-format:persistent?

philip.nemeth at philip.nemeth at
Sat Jan 9 20:25:33 UTC 2021

Hi Nate,

so for the record.

we have the IDP4 in a combination with a Microsoft AD LDAP. We want to use the AD users.
So - when i understand  you right - i just configuration the saml-nameid*xml/properties File to create the SAML2PersistentGenerator for my IDP?

Thank you very much,

Von: Nate Klingenstein-5 [via Shibboleth] <ml+s1660669n7648284h19 at>
Gesendet: Samstag, 9. Jänner 2021 21:04
An: philip.nemeth at
Betreff: RE: Problem with urn:oasis:names:tc:SAML:2.0:nameid-format:persistent?


> Do you have some Tips to translate the code? Need i translate to the attribute-filter and attribute-resolver?

Just use the same database settings or salt that you were using earlier, although you'll want to update any database driver too, if it's as old as IdPv2. ;)  It really isn't too complicated.  You shouldn't need anything in the attribute filter because this is only being sent as a NameID and is not being sourced as an attribute, but instead as a special kind of name identifier.

Take care,
For Consortium Member technical support, see
To unsubscribe from this list send an email to [hidden email]</user/SendEmail.jtp?type=node&node=7648284&i=0>

If you reply to this email, your message will be added to the discussion below:
To unsubscribe from Shibboleth - Users, click here<>.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <>

More information about the users mailing list