To configure PingFederate to extract token attributes:

  1. While configuring Access Token Management in PingFederate, add all the attributes that should be exposed for the token. PingFederate provides these attribute values to PingAccess for OAuth tokens.
  2. Click Access Token Attribute Contract under Create Access Token Management Instance and add the required attributes. Make sure to at least add Username.
    A screen capture of the Access Token Management | Create Access Token Management Instance page on the Access Token Attribute Contract tab.
    A screen capture of the Access Token Management | Create Access Token Management Instance page on the Access Token Attribute Contract tab.
  3. After adding the required attributes, configure the attribute sources:
    1. Click Access Token Mapping.
    2. Select the relevant Context.
    3. Click Contract Fulfilment.
    A screen capture of the Access Token Attribute Mapping | Access Token Mapping page on the Contract Fulfillment tab.