How To: Add a Fixed Value to a SAML Assertion

Follow
    Applies to:
  • SecureAuth Identity Platform
Deployment model:
  • Cloud
  • Hybrid
  • On Premises
  • Version Affected: All

     

    Overview

    This article explains how to configure a SecureAuth realm to send a fixed (static) value for a specific attribute in every Security Assertion Markup Language (SAML) assertion it issues, regardless of which user is authenticating. For example, you might need every assertion to include an attribute called Example with the value 440.

     

    Set the Fixed Value

    1. Pick an attribute that is not already in use, for example Auxid3.
    2. Open the realm's System Info tab and scroll to the bottom to edit the web.config.
    3. Set the Default value for that attribute to the fixed value you want sent. This value is case-sensitive, so match it exactly, as shown below.

    Web Config editor showing the Default value field for the Auxid3 attribute set to a fixed value, highlighted.

    1. On the Post Auth page, add the attribute so it is included in the SAML assertion, as shown below.

    Post Auth page showing the attribute added so it is included in the SAML assertion.




     

    SecureAuth Knowledge Base Articles provide information based on specific use cases and may not apply to all appliances or configurations. Be advised that these instructions could cause harm to the environment if not followed correctly or if they do not apply to the current use case.

    Customers are responsible for their own due diligence prior to utilizing this information and agree that SecureAuth is not liable for any issues caused by misconfiguration directly or indirectly related to SecureAuth products.

    0 out of 0 found this helpful

    Comments

    0 comments

    Please sign in to leave a comment.