How To: Pass a Set or Default Value Within a SAML Assertion

Follow
    Applies to:
  • Arculix
Deployment model:
  • Cloud
  • Version Affected: Arculix

     

    Overview

    It is possible to pass a fixed value within a SAML Assertion as an attribute, without that value being pulled from the user's account attributes. This is useful when a Service Provider requires an attribute value that is not held in the user's account attributes.

     

    Passing a Fixed Value in the Assertion

    For example, to pass a value of Hello World as an attribute within the Assertion, add the following to the Asserted Attributes section of the SAML Service Provider configuration tab:

    ->(_) { "Hello World" }
    • Arculix application configuration showing the Asserted Attributes section with the fixed value expression.

      The screenshot above shows the expression configured in the Arculix application's Asserted Attributes section.

    • SAML trace showing the Hello World value passed as an attribute in the assertion.

      The screenshot above shows a SAML trace confirming the value is passed correctly in the assertion.




     

    SecureAuth Knowledge Base Articles provide information based on specific use cases and may not apply to all appliances or configurations. Be advised that these instructions could cause harm to the environment if not followed correctly or if they do not apply to the current use case.

    Customers are responsible for their own due diligence prior to utilizing this information and agree that SecureAuth is not liable for any issues caused by misconfiguration directly or indirectly related to SecureAuth products.

    0 out of 0 found this helpful

    Comments

    0 comments

    Please sign in to leave a comment.