LDAP Attributes in ADFS

Kane 76 Reputation points
2020-07-31T17:17:50.85+00:00

Hi;

In ADFS, when configure a claim rules for Relying Parties, when I specify "E-mail-Addresses" in LDAP Attributes, how do I know what actual email address is being used for authentication?

thanks!

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,226 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Pierre Audonnet - MSFT 10,171 Reputation points Microsoft Employee
    2020-07-31T20:18:28.777+00:00

    What you pick in the issuance transform rules is not used to authenticate the user, it is what is sent to the application as a claim in the token.

    Do you mean that you would like to use the email instead of the UPN or the samaccountname to log in?

    0 comments No comments