You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Then Keycloak would throw an error: Can not have Transient NameID Policy Format together with SUBJECT Principal Type
And the IDP would not have been added even if it has Persistent as a second option.
The text was updated successfully, but these errors were encountered:
Description
When an Identity Provider has multiple NameID formats available, for example:
And we configure SAML federation with NameID Policy Format to
Persistent
, it will take theUnpsecified
option, because it is the first one.If
Transient
would be first and we chosePersistent
Then Keycloak would throw an error:
Can not have Transient NameID Policy Format together with SUBJECT Principal Type
And the IDP would not have been added even if it has
Persistent
as a second option.The text was updated successfully, but these errors were encountered: