<div dir="ltr"><div>If I need to use a custom value or a different NameID format for a particular SP, I add it to saml-nameid.xml similar to this (depending on the SP's requirements):</div><div><br></div><blockquote style="margin:0 0 0 40px;border:none;padding:0px"><div>        <bean parent="shibboleth.SAML2AttributeSourcedGenerator"</div><div>            p:format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent"</div><div>            p:attributeSourceIds="#{ {'bannerNameID'} }"></div><div>            <property name="activationCondition"></div><div>                <bean parent="shibboleth.Conditions.RelyingPartyId" c:candidate="<a href="https://v1-identity.dudesolutions.io/sso/saml2/metadata">https://v1-identity.dudesolutions.io/sso/saml2/metadata</a>" /></div><div>            </property></div><div>        </bean></div></blockquote><div><br></div><div>Is there a way to include multiple values for c:candidate so that I don't have to create a new bean for each SP that has the same requirement?</div><div><br></div>-- <br><div dir="ltr" class="gmail_signature" data-smartmail="gmail_signature"><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><pre cols="72">Jason Rotunno
System & Security Administrator
Swarthmore College
500 College Ave
Swarthmore, PA 19081
610.328.8505<br></pre><pre cols="72"><b>VERIFY before you click!!</b>
  - Attackers make their emails look like they come from someone they don't.
  - Attackers make links look like they go to websites they don't.
  - Attackers disguise malware as receipts, invoices, faxes, etc.</pre><pre cols="72">Forward suspicious emails to <a href="mailto:phishing@swarthmore.edu" style="font-family:Arial,Helvetica,sans-serif" target="_blank">phishing@swarthmore.edu</a><span style="font-family:Arial,Helvetica,sans-serif">.</span></pre></div></div></div></div></div></div></div></div></div></div></div></div></div>