
5rgp4 (5rgp4) asked a question.
I understand you can send group names in the SAML assertion using "group attribute statements" in SAML app config. However, I want to send group email addresses associated with AD. Note : I am synching my AD groups into Okta.

Thank you for contacting Okta,
You can send group names in the SAML assertion by using the “SAML 2.0 Template” that has an section for Group name and Group filter.
When the Group Name option is set, if a user belongs to any groups in Okta, those groups will be included in the SAML Response Attribute statement. Used in conjunction with Group filter. Using the Group filter section you would need to create an expression that will be used to filter groups. If the Okta group name matches the expression, the group name will be included in the SAML response.
Please note that using the above information is only for Okta Groups, so you you may need to create those groups in Okta, and assign users to those groups respectively.
Have an nice day,
Paul Munteanu
Technical Support Engineer