<div dir="ltr"><div class="gmail_default" style="font-family:courier new,monospace">I feel like I'm missing something simple here, I have an interrupt flow that will work based off of the context-check example, however if the SAML attribute eduPersonAffiliation is not released to the SP in question and I'm trying to check against it, I get the following in the logs.<br><br>Attribute eduPersonAffiliation not found in context<br><br></div><div class="gmail_default" style="font-family:courier new,monospace">It only works if the attribute-filter has eduPersonAffiliation released to the SP, but I want to check that attribute even if it's not released, Can I check against the raw LDAP attribute as opposed to the attributes in the SAML profile?<br><br></div><div class="gmail_default" style="font-family:courier new,monospace">Thanks<br></div><div class="gmail_default" style="font-family:courier new,monospace"><br clear="all"></div><div><div class="gmail_signature"><div dir="ltr"><font face="courier new, monospace">Jeffrey<a href="mailto:jeffreyc@ucsc.edu" target="_blank"></a></font><div><font face="courier new, monospace"><br></font></div><div><font face="courier new, monospace">Both pilots and IT professionals require training and currency before charging into clouds!<br></font></div><div><font face="courier new, monospace">---------------------------------------</font></div></div></div></div>
</div>