I wouldn&#39;t say eppn == mail, but would suggest that eppn is a routable address for the user<span></span>. <div><br></div><div>Dave <br><br>On Wednesday, June 4, 2014, Tom Scavo &lt;<a href="mailto:trscavo@gmail.com">trscavo@gmail.com</a>&gt; wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">On Wed, Jun 4, 2014 at 1:40 PM, David Bantz &lt;<a href="javascript:;" onclick="_e(event, &#39;cvml&#39;, &#39;dabantz@alaska.edu&#39;)">dabantz@alaska.edu</a>&gt; wrote:<br>

&gt;<br>
&gt; On Wed, 4 Jun 2014, at 08:34 , Tom Scavo &lt;<a href="javascript:;" onclick="_e(event, &#39;cvml&#39;, &#39;trscavo@gmail.com&#39;)">trscavo@gmail.com</a>&gt; wrote:<br>
&gt;<br>
&gt; We&#39;ve talked about tagging IdPs with<br>
&gt; various marks for best practices, but I really think we need a &quot;package&quot;<br>
&gt; of practices to capture into a mark of some kind.<br>
&gt;<br>
&gt; Something like this? <a href="https://spaces.internet2.edu/x/x4HYAg" target="_blank">https://spaces.internet2.edu/x/x4HYAg</a><br>
&gt;<br>
&gt; which states in part:<br>
&gt;<br>
&gt; &quot;Support at least the following user attributes:...mail (== ePPN)&quot;<br>
&gt;<br>
&gt; sigh….<br>
<br>
You&#39;re the third person to react like that :-) so I may want to modify<br>
that. The idea is: If you were building your IdM from scratch, it<br>
would be advisable to define your email addresses and ePPNs to be the<br>
same. This may be the wrong list but...do folks agree with that?<br>
<br>
Tom<br>
--<br>
To unsubscribe from this list send an email to <a href="javascript:;" onclick="_e(event, &#39;cvml&#39;, &#39;users-unsubscribe@shibboleth.net&#39;)">users-unsubscribe@shibboleth.net</a></blockquote></div><br><br>-- <br>
David Langenberg<div>Identity &amp; Access Management</div><div>The University of Chicago</div><br>