{"id":101840,"date":"2023-11-30T21:12:56","date_gmt":"2023-12-01T02:12:56","guid":{"rendered":"https:\/\/jumpcloud.com\/?post_type=support&p=101840"},"modified":"2023-11-30T21:37:23","modified_gmt":"2023-12-01T02:37:23","slug":"configure-user-attributes-for-saml-connectors","status":"publish","type":"support","link":"https:\/\/jumpcloud.com\/support\/configure-user-attributes-for-saml-connectors","title":{"rendered":"Configure User Attributes for SAML Connectors"},"content":{"rendered":"\n
Use JumpCloud SAML Single Sign On (SSO) to give your users convenient but secure access to all their web applications with a single set of credentials. To customize user roles and permissions in a SAML application, you can configure user attributes in SAML connectors. <\/p>\n\n\n\n
<\/p><\/div>
You can create custom attributes for user groups, then configure them on SAML connectors. Learn more in Using Group Inherited User Attributes<\/a>.<\/p>\n <\/div><\/div><\/div><\/div>\n\n\n\n Service Provider Required User Attributes<\/strong><\/p>\n\n\n\n When you configure user attributes for a pre-built connector, you see some user attributes that are pre-populated. These user attributes are required by the service provider for SAML Single Sign On (SSO) authentication. You can edit the Service Provide Attribute; you can\u2019t edit the JumpCloud Attribute Name.<\/p>\n\n\n\n JIT Required User Attributes<\/strong><\/p>\n\n\n\n Some pre-built connectors support Just-in-Time (JIT) provisioning and require additional attributes. JIT required attributes are pre-populated and are enabled for JIT provisioning by default. Keep the following in mind when working with JIT attributes:<\/p>\n\n\n\n Find about more about JIT provisioning<\/a>. <\/strong><\/p>\n\n\n\n Additional User Attributes<\/strong> Before you configure user attributes for SAML connectors, make sure you\u2019ve populated the standard and custom user attributes that you plan to use with SAML SSO. User attributes are unique to each user. Some standard user attributes are required when you create a new user, like username and company email. You\u2019ve populated some of the attributes that you might want to use with SAML SSO if you filled out attribute fields in the following sections in the User Details<\/strong> panel:<\/p>\n\n\n\n To learn how JumpCloud Attribute Names map to User Details attribute fields, see Mapping JumpCloud Attribute Names to Attributes in the User Details Panel<\/a>.<\/strong><\/p>\n\n\n\n To find out how JumpCloud Attribute Names map to attributes the User Details panel, use the following table:<\/p>\n\n\n\n<\/a>About User Attributes in SAML Connectors<\/strong><\/h2>\n\n\n\n
\n
You can add additional user attributes to customize user roles and permissions for an application. To configure additional user attributes for SAML connectors, use Step 1 and Step 2 in this article.<\/strong><\/p>\n\n\n\n<\/a>Step 1: Populating and Adding Attributes to Your Users <\/strong><\/h2>\n\n\n\n
\n
<\/figure>\n\n\n\n
To add standard and custom user attributes to a user<\/strong><\/h3>\n\n\n\n
\n
<\/a>Mapping JumpCloud Attribute Names to Attributes in the User Details Panel <\/strong><\/h3>\n\n\n\n