---
title: Choosing an identity mapping method for IdP SSO
description: In the Identity Mapping window, you choose the type of name identifier your partner requires. Your selection might affect the way that the service provider (SP) looks up and associates your users at the SP site. You and the SP should decide in advance which option to use.
component: pingfederate
version: 13.1
page_id: pingfederate:administrators_reference_guide:help_assertioncreationtasklet_selectspaccountlinkingstate
canonical_url: https://docs.pingidentity.com/pingfederate/13.1/administrators_reference_guide/help_assertioncreationtasklet_selectspaccountlinkingstate.html
llms_txt: https://docs.pingidentity.com/pingfederate/llms.txt
docs_for_agents: https://developer.pingidentity.com/build-with-ai/docs-for-agents.md
revdate: July 5, 2022
---

# Choosing an identity mapping method for IdP SSO

In the **Identity Mapping** window, you choose the type of name identifier your partner requires. Your selection might affect the way that the service provider (SP) looks up and associates your users at the SP site. You and the SP should decide in advance which option to use.

The choices of name-identifier types depend on whether you use the SAML or WS-Federation protocol. For more information, see one of the following.

* [Selecting a SAML Name ID type](pf_select_saml_name_id_type.html)

* [Selecting a WS-Federation Name ID type](help_assertioncreationtasklet_wsfedidentitymappingstate.html)

|   |                                                                                                                                                                                                                                                                                                |
| - | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
|   | The **Identity Mapping** window does not apply for connections using the WS-Federation protocol in conjunction with JSON web token (JWT)-based single sign-on (SSO) tokens. Instead, work with the SP to define an attribute contract that it can use to map users to accounts at the SP site. |
