
y4rgj (y4rgj) asked a question.
Hi everyone,
I've read a lot of posts but haven't found a solution to my current problem.
We are trying to integrate Okta with Pritunl Zero using SAML.
For Pritunl Zero to make uses of roles we need to provide a comma separated list as either "roles" or "groups"
When using Group Attribute Statements I've managed to get one role working. However, I would like to send all Groups a user is in to Pritunl Zero.
I've also tried using okta expression language inside the Attribute Statements Value field. I've only found examples of isMemberOfGroupName. I would like to use Groups.contains but I'm a little stuck.
If anyone has a working example that would be appreciated

Hello Chris,
There are a few links at https://help.okta.com/en/prod/Content/Topics/users-groups-profiles/usgp-user-profile-attributes-main.htm that would be helpful for you in mapping the roles/groups. If you still need further help, please let us know!
Tim
Okta, Inc.