SAML2.0 with AEM : Switching the UserID parameter from NameID to Email | Community
Skip to main content
Level 2
April 5, 2023
Solved

SAML2.0 with AEM : Switching the UserID parameter from NameID to Email

  • April 5, 2023
  • 1 reply
  • 620 views

We're using NameID as the SAML assertion attribute for the userIDAttributein the SAML OSGi config. Now, this needs to be changed to use Mail instead. We also have enabled auto-creation of user.
Upon making the configuration change to use Mail instead of NameID, duplicate users are getting created. This is expected because the value of the two properties differs. Is there a way to consolidate the two? Asking because before going ahead to write a script for this, wanted to understand if there is a utility already available for this? or if I am missing to update any other relevant configurations to achieve this change?

This post is no longer active and is closed to new replies. Need help? Start a new post to ask your question.
Best answer by lukasz-m

Hi @ Poorva_Jain,

Unfortunately there is no OOTB tool or configuration that you could use to consolidate user data. Writing groovy script probably will be the simplest option to achieve your goal.

 

1 reply

lukasz-m
Community Advisor
lukasz-mCommunity AdvisorAccepted solution
Community Advisor
May 5, 2023

Hi @ Poorva_Jain,

Unfortunately there is no OOTB tool or configuration that you could use to consolidate user data. Writing groovy script probably will be the simplest option to achieve your goal.