Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Select the relying party trust that has been created. In the right-hand menu, click on Edit Claim Issuance Policy. This will bring up a list of Issuance Transform Rules, initially empty. Click on Add Rule. For the claim rule template, select Send LDAP Attributes as Claims. On the next screen, give the claim rule a name (anything will do), and select Active Directory as the attribute store.

The Mapping mapping of LDAP attributes to outgoing claim types determines which of the user fields held on the active directory server are transmitted to the service provider. The name of the field on the right hand side does not matter, but you should try to pick something semantically close to the LDAP Attribute.

...