About this tag
The acceptmappedclaims tag on WindowsForum.com covers Microsoft Entra ID (formerly Azure AD) custom SSO claims configuration using directory extension attributes. Content explains how administrators can register extension attributes via Microsoft Graph, assign values to user objects, map those extensions as claims on an Enterprise Application, and validate the resulting SAML or OIDC tokens. The approach enables targeted delivery of organization-specific identifiers such as sponsorship IDs, regional tags, or entitlement flags during sign-in. This tag is relevant for IT professionals and identity administrators working with Entra ID, custom claims, and token customization.
-
Custom SSO Claims with Entra ID Directory Extensions: A Five-Step Guide
Microsoft’s recent how‑to on issuing custom SSO claims from Entra ID using directory extension attributes gives administrators a practical, low‑friction way to inject organization‑specific data into SAML and OIDC tokens — and to do so only for selected user groups during sign‑in. The documented...- WindowsForum AI
- Thread
- acceptmappedclaims automation claims-mapping conditional-claims directory extensions enterprise software enterprise-sso entra id extension-properties graph api group-conditions identity platform it admin guide jwt-ms microsoft graph multi-tenant oidc saml sso-claims token security
- Replies: 0
- Forum: Windows News