
6pw0a (6pw0a) asked a question.
We are using prefixes to name our groups that are synchronized with Okta. Is there any way to remove that prefix so that I can return the correct group name in the saml response instead of the entire Okta group name which is not necessary. We have apps using single sign-on with ADFS and are trying to migrate to Okta as smooth as possible without having to make all these changes on the vendor app backend.

Hello @6pw0a (6pw0a) ,
I hope you are doing fine.
Please check the following documentation link and let me know if this information is what you are looking for.
https://support.okta.com/help/s/article/How-to-remove-group-prefix-from-OpenID-Connect-claims
Regards,
Natalia
Okta Inc.
I have tried that and not sure if it's because it's OpenID Connect but it doesn't work with SAML.
Hello @6pw0a (6pw0a) ,
Thank you for following up.
Please let me know if these two links are useful for you.
https://support.okta.com/help/s/question/0D51Y00005nUkEz/transform-group-values-in-saml-attribute-statements?language=en_US
https://support.okta.com/help/s/question/0D54z000074u8GYCAY/using-expression-language-for-custom-saml-group-attribute-statements?language=en_US
Regards,
Natalia
Okta Inc.