OIDC embeddedAttributes
Wessel, Keith
kwessel at illinois.edu
Thu Jul 22 19:56:06 UTC 2021
Ah-ha! Sorry, the alwaysIncluded threw me off. Yes, that works perfectly! Thank you.
Keith
-----Original Message-----
From: users <users-bounces at shibboleth.net> On Behalf Of Cantor, Scott
Sent: Thursday, July 22, 2021 1:54 PM
To: Shib Users <users at shibboleth.net>
Subject: Re: OIDC embeddedAttributes
On 7/22/21, 2:49 PM, "users on behalf of Wessel, Keith" <users-bounces at shibboleth.net on behalf of kwessel at illinois.edu> wrote:
> Never min d, I just went back and read the comments again:
Use the documentation, not the comments.
>So, only question is does "alwaysIncludedAttributes" mean they're always there whether they were requested
> or not?
No, it means only what it says, it overrides the behavior that's normally controlled by response_type. Requesting something isn't connected to response_type.
> This would be the equivalent of adding placeToIDToken="true" on an attribute definition in V2 of the
> extension.
That setting is what alwaysIncludedAttributes replaces.
-- Scott
--
For Consortium Member technical support, see https://urldefense.com/v3/__https://shibboleth.atlassian.net/wiki/x/ZYEpPw__;!!DZ3fjg!uGLa5mjjdCH0B6TrWvswEXQj1k01KIXPkzKB4R2wvBc7-TGNtmX0GNgOqsDFJbxbyA$
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list