PingFederate Server

Extending an IdP adapter contract

You can use the Extended Contract tab to extend the contract of existing identity provider (IdP) adapters, especially those using the Composite Adapter.

About this task

If you are using the Composite Adapter, you must add attributes from the IdP adapter instances that comprise the composite configuration in this tab. For more information, see Composite Adapter.

If the adapter doesn’t return values for the extended attributes, or if you prefer to fulfill them differently using datastore queries, dynamic text values, or results from OGNL expressions, you can define their fulfillment on the Adapter Contract Mapping tab. For more information, see Defining the IdP adapter contract.

If this is a child instance, select the Override checkbox to modify the configuration.

Steps

  1. Go to Authentication → Integration → IdP Adapters.

  2. Click the name of the IdP adapter instance you want to modify.

  3. On the Create Adapter Instance window, select the Extended Contract tab.

  4. For each attribute that you want to add, enter the name of the attribute under Extend the Contract and click Add.

    For adapters that can be configured with a risk adapter, you can add risk provider attributes to the extended contract. The following risk provider attributes are available:

    Risk Provider Attributes

    Google reCAPTCHA v2

    • captchaChallengeTime

    Google reCAPTCHA v3

    • captchaChallengeTime

    • captchaScore

    PingOne Protect

    • riskLevel

    • riskScore

  5. Click Save.