Uploaded image for project: 'SAML for Atlassian Data Center'
  1. SAML for Atlassian Data Center
  2. SAMLDC-94

Configuring JIT on an IdP requires specifying a groups attribute/claim

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Low Low
    • None
    • 4.1.0, 4.2.0
    • SSO

      Issue Summary

      When configuring Just In Time Provisioning (JIT) on an identity provider it is required to provide an attribute or claim with the user's groups. Not all identity providers support such attributes, especially in the format required by the plugin, which limits the possible identity providers which can be configured

      Steps to Reproduce

      1. Try to configure JIT for an identity provider
      2. Don't provide a value for the groups claim
      3. Save the configuration

      Expected Results

      The changes are saved.

      Actual Results

      The submission is rejected because a mandatory field was not provided.

      Workaround

      Currently there is no known workaround for this behavior. A workaround will be added here when available

            [SAMLDC-94] Configuring JIT on an IdP requires specifying a groups attribute/claim

            We're setting up SAML for Jira Data Center and ran into this.  It would be great to make this field not required.  In our use case when the user account is created, we have a ScriptRunner Listener catch the UserCreated event and add the users to local Jira groups as needed because the groups do not exist in our IdP.

            Paul Stallworth added a comment - We're setting up SAML for Jira Data Center and ran into this.  It would be great to make this field not required.  In our use case when the user account is created, we have a ScriptRunner Listener catch the UserCreated event and add the users to local Jira groups as needed because the groups do not exist in our IdP.

              be7c05aff5ef Jakub Durzyński
              d618d4b82e9d Patryk Petrowski
              Affected customers:
              3 This affects my team
              Watchers:
              5 Start watching this issue

                Created:
                Updated: