Microsoft 365 Attribute Mapping
About this task
PingOne automatically populates required SAML attributes.
For Microsoft 365, the required attributes are:
-
subject: maps to theuserPrincipalNameActive Directory attribute. -
guid: maps to theobjectGUIDActive Directory attribute.Microsoft has updated the default
sourceAnchorattribute to usems-DS-consistencyGUIDby default. To determine which option is best for your organization, see Azure AD Connect: Design concepts in the Microsoft documentation.
Steps
-
To add an additional optional attribute, click Add new attribute.
-
In the Application Attribute field, enter the attribute name as it appears in the application.
-
In the Identity Bridge Attribute or Literal Value field, choose one of the following:
Choose from:
-
To map to the application attribute: Enter or select a directory attribute.
-
To assign to the application attribute: Select As Literal, then enter a literal value.
-
-
To create advanced attribute mappings, click Advanced.
Learn more in Creating advanced attribute mappings.
Next steps
Click Continue to Next Step.