<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>article Qlik Sense: What are SAML attributes in Official Support Articles</title>
    <link>https://community.qlik.com/t5/Official-Support-Articles/Qlik-Sense-What-are-SAML-attributes/ta-p/1717415</link>
    <description>&lt;P&gt;Please note that instructions and examples in this article are provided&amp;nbsp;&lt;EM&gt;as is&amp;nbsp;&lt;/EM&gt;and will likely require additional adjustments for direct deployment. The instructions and information are intended as guides. If you require additional assistance, we encourage you to &lt;EM&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Sense-Integration-Extensions-APIs/bd-p/qlik-sense-integration-extension-api" target="_blank" rel="noopener"&gt;post your questions in the corresponding community forum&lt;/A&gt;&lt;/EM&gt; or to contact our &lt;EM&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/How-and-When-to-Contact-the-Consulting-Team/ta-p/1714936" target="_blank" rel="noopener"&gt;Professional Services.&lt;/A&gt;&lt;/EM&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;Description&lt;/H3&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When you set up a virtual proxy with SAML in Qlik Sense, you are asked to fill in several attributes such as the attribute for the User Id or the one for User Directory.&lt;BR /&gt;This article explains what are SAML attributes and give some examples of where it can be found for different SAML Identity providers.&lt;BR /&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeA&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566694000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;Resolution:&lt;/H3&gt;
&lt;P&gt;&lt;BR /&gt;SAML attributes can have different names depending on the Identity providers.&lt;BR /&gt;&lt;BR /&gt;Attributes can be printed in the logs by enabling DEBUG logs on Proxy Audit logs.&lt;BR /&gt;See&amp;nbsp;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/Security-Rules-Fail-For-SSO-SAML-Users-and-The-Group-or-Other/ta-p/1715208" target="_blank" rel="noopener"&gt;How to see SAML attributes received by Qlik Sense (user.environment)&lt;/A&gt;&amp;nbsp;for details.&lt;BR /&gt;&lt;BR /&gt;It can also be found in the SAML assertion, which can be seen using a browser extension such as SAML Tracer for Firefox or&amp;nbsp;SAML DevTools extension&amp;nbsp;for Chrome.&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;ADFS:&lt;/STRONG&gt;&lt;BR /&gt;Go to [Claim descriptions]&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeF&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566705000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&lt;BR /&gt;In Qlik Sense, you can use either the claim name or the claim type.&lt;BR /&gt;&lt;BR /&gt;It is also possible to create custom claims, some examples are available in the following articles:&lt;BR /&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/Qlik-Sense-Set-up-dynamic-domain-name-for-ADFS-SAML/ta-p/1715598" target="_blank" rel="noopener"&gt;Qlik Sense: Set up dynamic domain name for ADFS (SAML)&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/Qlik-Sense-Work-around-the-20-characters-limit-on-user-names/ta-p/1717359" target="_blank" rel="noopener"&gt;Qlik Sense: Work around the 20 characters limit on user names when using ADFS (SAML)&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;OneLogin:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Go to [Parameters] to check/add attributes.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeK&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566716000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Make sure that the box "Include in SAML assertion" is checked for it to be usable.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeP&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566728000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Azure:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;This can be found under [User Attributes]&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeU&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566772000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&lt;BR /&gt;You can use the attribute name with or without its namespace in front.&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Salesforce:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;There are 4 attributes included by default.&lt;BR /&gt;- userId&lt;BR /&gt;- username&lt;BR /&gt;- email&lt;BR /&gt;- is_portal_user&lt;BR /&gt;&lt;BR /&gt;To add a custom attribute, go to Connected applications &amp;gt; Manage connected applications &amp;gt; Custom attributes&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeZ&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566791000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 23 Feb 2021 09:13:49 GMT</pubDate>
    <dc:creator>Damien_V</dc:creator>
    <dc:date>2021-02-23T09:13:49Z</dc:date>
    <item>
      <title>Qlik Sense: What are SAML attributes</title>
      <link>https://community.qlik.com/t5/Official-Support-Articles/Qlik-Sense-What-are-SAML-attributes/ta-p/1717415</link>
      <description>&lt;P&gt;Please note that instructions and examples in this article are provided&amp;nbsp;&lt;EM&gt;as is&amp;nbsp;&lt;/EM&gt;and will likely require additional adjustments for direct deployment. The instructions and information are intended as guides. If you require additional assistance, we encourage you to &lt;EM&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Sense-Integration-Extensions-APIs/bd-p/qlik-sense-integration-extension-api" target="_blank" rel="noopener"&gt;post your questions in the corresponding community forum&lt;/A&gt;&lt;/EM&gt; or to contact our &lt;EM&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/How-and-When-to-Contact-the-Consulting-Team/ta-p/1714936" target="_blank" rel="noopener"&gt;Professional Services.&lt;/A&gt;&lt;/EM&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;Description&lt;/H3&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When you set up a virtual proxy with SAML in Qlik Sense, you are asked to fill in several attributes such as the attribute for the User Id or the one for User Directory.&lt;BR /&gt;This article explains what are SAML attributes and give some examples of where it can be found for different SAML Identity providers.&lt;BR /&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeA&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566694000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;Resolution:&lt;/H3&gt;
&lt;P&gt;&lt;BR /&gt;SAML attributes can have different names depending on the Identity providers.&lt;BR /&gt;&lt;BR /&gt;Attributes can be printed in the logs by enabling DEBUG logs on Proxy Audit logs.&lt;BR /&gt;See&amp;nbsp;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/Security-Rules-Fail-For-SSO-SAML-Users-and-The-Group-or-Other/ta-p/1715208" target="_blank" rel="noopener"&gt;How to see SAML attributes received by Qlik Sense (user.environment)&lt;/A&gt;&amp;nbsp;for details.&lt;BR /&gt;&lt;BR /&gt;It can also be found in the SAML assertion, which can be seen using a browser extension such as SAML Tracer for Firefox or&amp;nbsp;SAML DevTools extension&amp;nbsp;for Chrome.&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;ADFS:&lt;/STRONG&gt;&lt;BR /&gt;Go to [Claim descriptions]&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeF&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566705000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&lt;BR /&gt;In Qlik Sense, you can use either the claim name or the claim type.&lt;BR /&gt;&lt;BR /&gt;It is also possible to create custom claims, some examples are available in the following articles:&lt;BR /&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/Qlik-Sense-Set-up-dynamic-domain-name-for-ADFS-SAML/ta-p/1715598" target="_blank" rel="noopener"&gt;Qlik Sense: Set up dynamic domain name for ADFS (SAML)&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/Qlik-Sense-Work-around-the-20-characters-limit-on-user-names/ta-p/1717359" target="_blank" rel="noopener"&gt;Qlik Sense: Work around the 20 characters limit on user names when using ADFS (SAML)&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;OneLogin:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Go to [Parameters] to check/add attributes.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeK&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566716000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Make sure that the box "Include in SAML assertion" is checked for it to be usable.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeP&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566728000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Azure:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;This can be found under [User Attributes]&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeU&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566772000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&lt;BR /&gt;You can use the attribute name with or without its namespace in front.&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Salesforce:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;There are 4 attributes included by default.&lt;BR /&gt;- userId&lt;BR /&gt;- username&lt;BR /&gt;- email&lt;BR /&gt;- is_portal_user&lt;BR /&gt;&lt;BR /&gt;To add a custom attribute, go to Connected applications &amp;gt; Manage connected applications &amp;gt; Custom attributes&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;IMG src="https://qlik.my.salesforce.com/servlet/servlet.ImageServer?id=015D0000005XJeZ&amp;amp;oid=00D20000000IGPX&amp;amp;lastMod=1547566791000" border="0" alt="User-added image" /&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 23 Feb 2021 09:13:49 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Official-Support-Articles/Qlik-Sense-What-are-SAML-attributes/ta-p/1717415</guid>
      <dc:creator>Damien_V</dc:creator>
      <dc:date>2021-02-23T09:13:49Z</dc:date>
    </item>
  </channel>
</rss>

