Configuring policy contract grant mapping
Configure policy contract grant mapping for the PingFederate integration.
Manage the mappings from the authentication policy contract you created into the persistent grant contract.
Steps
-
In PingFederate, configure policy contract grant mapping.
Learn more in Grant contract mapping.
Choose from:
-
PingFederate 10.1 or later: Click Authentication > OAuth
-
PingFederate 10 or earlier: In the OAuth Server tab, Grant Mapping area, click Authentication Policy Contract Mappings.
-
-
In the Policy Contract Mapping window:
-
In the Policy Contract field, select the authentication policy contract you created earlier and then click Add Mapping.
-
On the Attribute Sources & User Lookup tab, click Next.
-
On the Contract Fulfillment tab, enter the following and then click Next:
-
From the USER_KEY source list, select Authentication Policy Contract, and in the Value field, select subject.
-
From the USER_NAME source list, select Authentication Policy Contract, and in the Value field, select subject.
-
-
On the Issuance Criteria tab, click Next, and then on the Summary tab, click Save.
Result:
The new policy grant mapping is shown in the Mappings list.
-