Followup to previous question about Shibboleth 5.1.4 Attribute Authority functionality

o haya ohaya1001 at gmail.com
Wed Feb 11 01:53:01 UTC 2026


Hi Scott,

Thanks to that document, I was able to setup properties files in the
conf/attributes/custom directory for each of the attributes that I wanted
to be included in the response, and then it all worked perfectly!

Thanks for the link, and also for the document itself!

Jim

On Mon, Feb 9, 2026 at 4:25 PM o haya <ohaya1001 at gmail.com> wrote:

> Hi Scott,
>
> THANKS!  I will take a look at the reference, and also I hope that you all
> are doing well!!
>
> Jim
>
> On Mon, Feb 9, 2026 at 3:48 PM Scott Cantor via users <
> users at shibboleth.net> wrote:
>
>> On list please.
>>
>> > So now we have to figure out why Shibboleth didn't like the <Attribute>
>> elements....
>>
>> Because you gave it no rules to apply to decode those constructs in XML
>> into the names of IdPAttributes to match up with the data it's returning
>> internally.
>>
>>
>> https://shibboleth.atlassian.net/wiki/spaces/IDP5/pages/3199510553/TranscodingRuleConfiguration
>>
>> There is no way for an IdP to turn SAML naming, which is extremely
>> arbitrary, into "mail" or "displayName", without being instructed how to do
>> that, and the only rules the IdP ships with are the ones that follow the
>> standard.
>>
>> -- Scott
>>
>> --
>> For Consortium Member technical support, see
>> https://shibboleth.atlassian.net/wiki/x/ZYEpPw
>> To unsubscribe from this list send an email to
>> users-unsubscribe at shibboleth.net
>>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20260210/4989bb54/attachment.htm>


More information about the users mailing list