<html><head><meta http-equiv="Content-Type" content="text/html charset=utf-8"></head><body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space;" class=""><div class="">> You can't map in a NameID in unless you know the Format XML attribute used. Which you posted, and I have no specific memory other than that it was some string, and I said "well, that's an illegal value, but you can use it if you're willing to accept broken SAML". Whatever it is, that's what goes in the rule.</div><div class=""><br class=""></div><div class="">What I posted was an entry that I copied and modified because I don’t know what I’m doing. Can we forget that please, and assume that my attribute-map.xml file is as delivered and go from there? </div><div class=""><br class=""></div><div class="">>You can't map in a NameID in unless you know the Format XML attribute used</div><div class=""><br class=""></div><div class="">OK, so do I need to get that from the response XML that the IdP sends to Shibboleth? If so, what would be the right debug option to set in order to write that out so I can look at it? </div><br class=""><div class="">
<div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: 12px; font-style: normal; font-variant-caps: normal; font-weight: normal; letter-spacing: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0px;">--</div><div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: 12px; font-style: normal; font-variant-caps: normal; font-weight: normal; letter-spacing: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0px;">Adam von Nieda</div><div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: 12px; font-style: normal; font-variant-caps: normal; font-weight: normal; letter-spacing: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0px;"><a href="mailto:Adam@vonNieda.org" class="">Adam@vonNieda.org</a></div><div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: 12px; font-style: normal; font-variant-caps: normal; font-weight: normal; letter-spacing: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0px;" class=""><br class=""></div><br class="Apple-interchange-newline">
</div>
<br class=""><div><blockquote type="cite" class=""><div class="">On Jun 9, 2017, at 1:13 PM, Cantor, Scott <<a href="mailto:cantor.2@osu.edu" class="">cantor.2@osu.edu</a>> wrote:</div><br class="Apple-interchange-newline"><div class=""><span style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant-caps: normal; font-weight: normal; letter-spacing: normal; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; word-spacing: 0px; -webkit-text-stroke-width: 0px; float: none; display: inline !important;" class="">You can't map in a NameID in unless you know the Format XML attribute used. Which you posted, and I have no specific memory other than that it was some string, and I said "well, that's an illegal value, but you can use it if you're willing to accept broken SAML". Whatever it is, that's what goes in the rule.</span></div></blockquote></div><br class=""></body></html>