nameID content vs format
IAM David Bantz
dabantz at alaska.edu
Thu Aug 17 19:56:54 UTC 2023
On Aug 15, 2023 at 18:51:59, "Cantor, Scott" <cantor.2 at osu.edu> wrote:
> If you want to pass them eduPersonUniqueID, that's typically an Attribute,
> and the convention for expressing any Attribute as a NameID (assuming it's
> sensible to do so) is that the Format is set to the Attribute's Name. I do
> it all the time, mostly with employeeNumber and one or two locally-defined
> ones.
Thanks for input Scott and Peter. I’ve used that and now providing:
<saml2:Subject>
<saml2:NameID Format="urn:oid:1.3.6.1.4.1.5923.1.1.1.13”
NameQualifier="urn:mace:incommon:alaska.edu”
SPNameQualifier="trtasso.thomson.com”>••••••••@alaska.edu</saml2:NameID>
</saml2:Subject>
Their entityID is of course not a URI, but I don’t think I’m up for
argument with them.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20230817/7d4d7b01/attachment.htm>
More information about the users
mailing list