You need to configure PingFederate for PingIntelligence policy to be able to extract the
username from the incoming token. Complete the following steps to configure PingFederate
to extract token attributes:
- While configuring Access Token Management in PingFederate, add all the attributes that should be exposed for the token. PingFederate provides these attribute values to PingAccess for OAuth tokens.
- Click Access Token Attribute Contract under Access token management Instance and add the required attributes. Make sure to at least add username.
- After Adding the required attributes, configure the attribute sources:
- Click Access Token Mapping
- Select the relevant Context
- Click Contract Fulfilment