Uploaded image for project: 'SAML for Atlassian Data Center'
  1. SAML for Atlassian Data Center
  2. SAMLDC-94

Configuring JIT on an IdP requires specifying a groups attribute/claim

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Low Low
    • None
    • 4.1.0, 4.2.0
    • SSO

      Issue Summary

      When configuring Just In Time Provisioning (JIT) on an identity provider it is required to provide an attribute or claim with the user's groups. Not all identity providers support such attributes, especially in the format required by the plugin, which limits the possible identity providers which can be configured

      Steps to Reproduce

      1. Try to configure JIT for an identity provider
      2. Don't provide a value for the groups claim
      3. Save the configuration

      Expected Results

      The changes are saved.

      Actual Results

      The submission is rejected because a mandatory field was not provided.

      Workaround

      Currently there is no known workaround for this behavior. A workaround will be added here when available

              be7c05aff5ef Jakub Durzyński
              d618d4b82e9d Patryk Petrowski
              Affected customers:
              3 This affects my team
              Watchers:
              5 Start watching this issue

                Created:
                Updated: