<div dir="ltr"><div>If I need to use a custom value or a different NameID format for a particular SP, I add it to saml-nameid.xml similar to this (depending on the SP's requirements):</div><div><br></div><blockquote style="margin:0 0 0 40px;border:none;padding:0px"><div> <bean parent="shibboleth.SAML2AttributeSourcedGenerator"</div><div> p:format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent"</div><div> p:attributeSourceIds="#{ {'bannerNameID'} }"></div><div> <property name="activationCondition"></div><div> <bean parent="shibboleth.Conditions.RelyingPartyId" c:candidate="<a href="https://v1-identity.dudesolutions.io/sso/saml2/metadata">https://v1-identity.dudesolutions.io/sso/saml2/metadata</a>" /></div><div> </property></div><div> </bean></div></blockquote><div><br></div><div>Is there a way to include multiple values for c:candidate so that I don't have to create a new bean for each SP that has the same requirement?</div><div><br></div>-- <br><div dir="ltr" class="gmail_signature" data-smartmail="gmail_signature"><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><pre cols="72">Jason Rotunno
System & Security Administrator
Swarthmore College
500 College Ave
Swarthmore, PA 19081
610.328.8505<br></pre><pre cols="72"><b>VERIFY before you click!!</b>
- Attackers make their emails look like they come from someone they don't.
- Attackers make links look like they go to websites they don't.
- Attackers disguise malware as receipts, invoices, faxes, etc.</pre><pre cols="72">Forward suspicious emails to <a href="mailto:phishing@swarthmore.edu" style="font-family:Arial,Helvetica,sans-serif" target="_blank">phishing@swarthmore.edu</a><span style="font-family:Arial,Helvetica,sans-serif">.</span></pre></div></div></div></div></div></div></div></div></div></div></div></div></div>