AssertionProvider
Valve used to create a SAML assertion. This is applicable in scenarios where PhenixID Server acts as a SAML Identity Provider.
This valve requires the Current Item Set to contain one and only one item. This item is used to populate the assertion with values.
Properties
Example Configuration
{
"name": "AssertionProvider",
"config": {
"targetEntityID": "PhenixID_IdP",
"nameIDAttribute": "carLicense",
"misc": [{
"excludeSubjectNotBefore": "true",
"nameIdFormat": "urn:oasis:names:tc:SAML:2.0:nameid-format:persistent",
"signMessage": "false",
"signAssertion": "true",
"audienceRestriction": "urn:federation:MicrosoftOnline"
}],
"sourceID": "urn:federation:MicrosoftOnline",
"additionalAttributes": "IDPEmail"
}
}
Requirements
SAML module is deployed.