function readOnly(count){ }
Starting November 20, the site will be set to read-only. On December 4, 2023,
forum discussions will move to the Trailblazer Community.
+ Start a Discussion
SuvarnaSuvarna 

Salesforce as IDP to send custom attributes

Is it possible for Salesforce configured as IDP to send custom attributes like say organization or manager Id in the SAML response from Salesforce.

NM_IAMNM_IAM

We need to get additional attributes in the SAML assertion that is returned by salesforce to the service provider.

I would highly appreciate any help.

AminYAminY

As far as I know SAML2 will either send the username, or the federation id back to the SP (your webservice). You can change the federation Id to something that suites your situation (embed all the information you need.)

 

Another way to go is to access the user info using a Remote Access and API.

Francis VierboomFrancis Vierboom

Found this thread via google but then got a new answer from twitter. Apparently it's possible to do this by configuring attributes in the service provider configuration area - see https://twitter.com/metadaddy/status/392862781382221824/photo/1