<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00007hYOnICAWOkta Classic EngineIntegrationsAnswered2022-06-08T15:48:52.000Z2022-06-06T20:31:46.000Z2022-06-08T15:48:52.000Z

IanK.18410 (Customer) asked a question.

Does Okta support Subject attribute in SAML requests?

Hello,

 

My team and I are building an integration between Okta and another product, which I'll just call V in this ticket.

 

V uses a SAML style app integration where it acts as the service provider and Okta acts as the identity provider. The user enters their company email in V's login screen, which redirects them to Okta.

 

This works great, except for one small problem: the email field on the Okta page isn't populated by the email address. In other words, the user must type their email a second time to sign in with Okta.

 

I have been informed that pre-populating an identity provider's email field is possible using a SAML sign on and that it may be possible to use the (<saml:Subject>testuser@test.com</saml:Subject>)  attribute to pass the email through. Does Okta support this attribute in AuthnRequests?

 

Thank you for your time.

 

-Ian from Comhar Technology Group


  • Paul S. (Okta, Inc.)

    Hello @IanK.18410 (Customer)​  Thank you for reacting out to our Community!

     

    At this time the experience you are seeing is expected behaviour for the Classic Engine, however in the new OIE Engine when you are directed to Okta from Sp initiated login the username is populated.

    I have tested this in Classic and OIE, for an SP initiated login.

     

    Hope this helps and if this answered your question, please mark this as Best Answer!

    Expand Post
    Selected as Best
  • Paul S. (Okta, Inc.)

    Hello @IanK.18410 (Customer)​  Thank you for reacting out to our Community!

     

    At this time the experience you are seeing is expected behaviour for the Classic Engine, however in the new OIE Engine when you are directed to Okta from Sp initiated login the username is populated.

    I have tested this in Classic and OIE, for an SP initiated login.

     

    Hope this helps and if this answered your question, please mark this as Best Answer!

    Expand Post
    Selected as Best
  • IanK.18410 (Customer)

    Hi Paul,

     

    Thank you for the answer. How can I enable OIE for my SAML application? -Ian

  • Paul S. (Okta, Inc.)

    Hello @IanK.18410 (Customer)​  OIE is the type of Org that you have. To switch to OIE we recommend to reach out to your Account Executive for this.

     

    Hope this helps!

This question is closed.
Loading
Does Okta support Subject attribute in SAML requests?