Unlock a world of possibilities! Login now and discover the exclusive benefits awaiting you.
May 30, 2023 12:24:06 AM
Jan 15, 2020 3:44:44 AM
Is it possible to use a SAML attribute for the display name in Qlik Sense Enterprise on Windows?
It is not possible to use a SAML attribute for the display name.
A user directory connector needs to be used to synchronize the display name for the user, it will add up the information to the same user as long as User Directory and User ID match.
Another alternative would be to use OIDC authentication instead of SAML authentication. Fetching Display name through OIDC claims is supported in Qlik Sense.
Please also note that an outgoing connection to the Identity Provider is needed for OIDC authentication while it's not required for SAML.
As we understand that It is not possible to use a SAML attribute for the display name.
how can we archive the goal of same user will match User Directory name and SAML Attribute for
User ID ?
Thanks
Eyal Nir
#SAML attribute
Hello @eyalnir_qlik
You just create a User Directory Connector that sync the user with the same User Directory and same Username but also contains a display name.
I am not sure I fully get your question.
Alternately, OIDC authentication supports adding a display name.
See the sample inline, for instance after we authenticate via SAML azure,
same user "display name" show as eyal.nir@dns.co.il VS. AD user display as eyaln ,
in that scenario we need to consume 2 professional licenses for actually same user.
the challenge for us to sync between them in order to consume only 1 professional license
hope it's more clear now
Thanks
Eyal
Hello @eyalnir_qlik
License assignment is based on User Directory and User id, it has nothing to do with display name.
So if you're running into that issue, it means your user id doesn't match.
Please open a separate thread in https://community.qlik.com/t5/Deployment-Management/bd-p/qlik-sense-deployment if you need further help as this is unrelated to the topic of this article.
Hello,
This article provided the solution for display name issue in OKTA,
https://community.qlik.com/t5/Deployment-Management/Integrating-AD-Users-with-Okta-SSO/td-p/1336115
Thanks
Eyal Nir