Verifying the mapping of the identity provider’s attributes

Last Updated : Jun 10, 2026 |

Procedure

  1. In a web browser, enter the following URL:

    https://<AADS IP or FQDN>:<AADS PORT>/auth/admin

  2. Enter the user name and the password that you created when configuring the Keycloak settings.
  3. In the left area, click Identity Providers.

    Currently, the identity provider is automatically imported with the name Shibboleth.

  4. Click the Shibboleth link.
  5. Click the Mappers tab.
  6. Verify that the attribute mapping uses correct names for attributes that are released by the identity provider.
    Tip:

    You can open a a decrypted SAMLResponse returned from the identity provider in a new browser window and then compare the attribute names from the SAMLResponse with attriubte names that are used in the Keycloak attribute mapping.