OIDC embeddedAttributes

Wessel, Keith kwessel at illinois.edu
Thu Jul 22 19:56:06 UTC 2021


Ah-ha! Sorry, the alwaysIncluded threw me off. Yes, that works perfectly! Thank you.

Keith


-----Original Message-----
From: users <users-bounces at shibboleth.net> On Behalf Of Cantor, Scott
Sent: Thursday, July 22, 2021 1:54 PM
To: Shib Users <users at shibboleth.net>
Subject: Re: OIDC embeddedAttributes

On 7/22/21, 2:49 PM, "users on behalf of Wessel, Keith" <users-bounces at shibboleth.net on behalf of kwessel at illinois.edu> wrote:

>    Never min d, I just went back and read the comments again:

Use the documentation, not the comments.

>So, only question is does "alwaysIncludedAttributes" mean they're always there whether they were requested
> or not?

No, it means only what it says, it overrides the behavior that's normally controlled by response_type. Requesting something isn't connected to response_type.

> This would be the equivalent of adding placeToIDToken="true" on an attribute definition in V2 of the
> extension.

That setting is what alwaysIncludedAttributes replaces.

-- Scott


-- 
For Consortium Member technical support, see https://urldefense.com/v3/__https://shibboleth.atlassian.net/wiki/x/ZYEpPw__;!!DZ3fjg!uGLa5mjjdCH0B6TrWvswEXQj1k01KIXPkzKB4R2wvBc7-TGNtmX0GNgOqsDFJbxbyA$ 
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net


More information about the users mailing list