Currently we release the following public attributes. Other attributes are available but must be configured - please send email to idmgmt@cornell.edu if you don't see the attribute you are looking for. Majority of Service Providers use Attribute Name In SAML Assertion(value in second column) to map to the attribute in their system, but some service providers use Friendly name in SAML Assertion. AttributeNameInEnterpriseDirectory | Attribute Name In SAML Assertion | Attribute Friendly Name in SAML Assertion |
---|
edupersonprimaryaffiliation | urn:oid:1.3.6.1.4.1.5923.1.1.1.5 | edupersonprimaryaffiliation | cn(commonName) | urn:oid:2.5.4.3 | cn | eduPersonPrincipalName (netid@cornell.edu) | urn:oid:1.3.6.1.4.1.5923.1.1.1.6 | eduPersonPrincipalName | givenName (first name) | urn:oid:2.5.4.42 | givenName | sn(last name) | urn:oid:2.5.4.4 | sn | displayName | urn:oid:2.16.840.1.113730.3.1.241 | displayName | uid (netid) | urn:oid:0.9.2342.19200300.100.1.1 | uid | eduPersonOrgDN | urn:oid:1.3.6.1.4.1.5923.1.1.1.3 | eduPersonOrgDN | mail | urn:oid:0.9.2342.19200300.100.1.3 | mail | eduPersonAffiliation | urn:oid:1.3.6.1.4.1.5923.1.1.1.1 | eduPersonAffiliation | eduPersonScopedAffiliation | urn:oid:1.3.6.1.4.1.5923.1.1.1.9 | eduPersonScopedAffiliation | eduPersonEntitlement | urn:oid:1.3.6.1.4.1.5923.1.1.1.7 | eduPersonEntitlement |
TransientId is the default NameID. |