openam-jp / openam

Other
32 stars 15 forks source link

Enable Disable-NameID-Persistence by default for the case that NameID is unspecified #264

Open ogis-song opened 2 years ago

ogis-song commented 2 years ago

Description

If the value of NameID is unspecified, the default behavior is the same as for persistent.

Solution

Enable the following settings by default By enabling the default value of the "Disable NameID Persistence" parameter, the same behavior as in the persistent case can be avoided.

Federation -> [IdP's Entity Provider ID] -> Assertion Processing -> Account Mapper
・Disable NameID Persistence

Federation -> [SP's Entity Provider ID] -> Assertion Content ->NameID Format
・Disable NameID Persistence