Version Affected: Arculix
Overview
It is possible to pass a fixed value within a SAML Assertion as an attribute, without that value being pulled from the user's account attributes. This is useful when a Service Provider requires an attribute value that is not held in the user's account attributes.
Passing a Fixed Value in the Assertion
For example, to pass a value of Hello World as an attribute within the Assertion, add the following to the Asserted Attributes section of the SAML Service Provider configuration tab:
->(_) { "Hello World" }-
The screenshot above shows the expression configured in the Arculix application's Asserted Attributes section.
-
The screenshot above shows a SAML trace confirming the value is passed correctly in the assertion.
SecureAuth Knowledge Base Articles provide information based on specific use cases and may not apply to all appliances or configurations. Be advised that these instructions could cause harm to the environment if not followed correctly or if they do not apply to the current use case.
Customers are responsible for their own due diligence prior to utilizing this information and agree that SecureAuth is not liable for any issues caused by misconfiguration directly or indirectly related to SecureAuth products.
Comments
Please sign in to leave a comment.