Answered by:
Claims Language Syntax Question

Question
-
Hi all
Can anyone point me a definitive source for the syntax and grammar of the claims language as used in ADFS?
I need something with specific examples of certain use cases
For example I have a SQL database containing the employee number attribute for all my users. The database also contains their UPN.
I would like to create a claim rule that will send back the employee number if the UPN in AD matches the UPN in the SQL database.
I've been scratching my head for a while with no luck.
Can anyone assist?
Regards
Peter
Tuesday, August 2, 2016 9:54 AM
Answers
-
Could have sworn I answered this question ...
There is no equality rule for dynamic values.
I normally do this kind of thing via a custom attribute store.
- Marked as answer by Pierre Audonnet [MSFT]Microsoft employee Thursday, August 4, 2016 1:18 PM
Thursday, August 4, 2016 1:15 AM -
You are right, you answered. It is a duplicate: https://social.technet.microsoft.com/Forums/windowsserver/en-US/10316613-7184-4e96-af03-60282c7daf65/claims-language-question?forum=ADFS
Readers, please, follow the link.
Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.
- Marked as answer by Pierre Audonnet [MSFT]Microsoft employee Thursday, August 4, 2016 1:18 PM
Thursday, August 4, 2016 1:18 PM
All replies
-
Many info here: https://social.technet.microsoft.com/wiki/contents/articles/4792.understanding-claim-rule-language-in-ad-fs-2-0-higher.aspx
Give it a try and tell us where you are at.
Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.
- Proposed as answer by Pierre Audonnet [MSFT]Microsoft employee Thursday, August 4, 2016 12:36 AM
Thursday, August 4, 2016 12:35 AM -
Could have sworn I answered this question ...
There is no equality rule for dynamic values.
I normally do this kind of thing via a custom attribute store.
- Marked as answer by Pierre Audonnet [MSFT]Microsoft employee Thursday, August 4, 2016 1:18 PM
Thursday, August 4, 2016 1:15 AM -
You are right, you answered. It is a duplicate: https://social.technet.microsoft.com/Forums/windowsserver/en-US/10316613-7184-4e96-af03-60282c7daf65/claims-language-question?forum=ADFS
Readers, please, follow the link.
Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.
- Marked as answer by Pierre Audonnet [MSFT]Microsoft employee Thursday, August 4, 2016 1:18 PM
Thursday, August 4, 2016 1:18 PM