The following table lists mappers that you must configure if you are using the Microsoft Azure SAML v2.0 identity provider:
Mapper name |
Mapper type |
User Attribute Name |
Attribute Name |
Attriubte Value |
Role |
firstName |
Attribute Importer |
firstName |
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/givenname |
firstName |
— |
lastName |
Attribute Importer |
lastName |
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/surname |
lastName |
— |
email |
Attribute Importer |
email |
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress |
email |
— |
aads.user |
SAML Attribute to Role |
— |
http://schemas.microsoft.com/ws/2008/06/identity/claims/groups |
The ID of the User Group configured on Microsoft Azure |
aads.user |
aads.admin |
SAML Attribute to Role |
— |
http://schemas.microsoft.com/ws/2008/06/identity/claims/groups |
The ID of the Administrator group configured on Microsoft Azure |
aads.admin |