SAP Knowledge Base Article - Public

3727033 - Changing SAML 2.0 Attributes Sent by SuccessFactors as Identity Provider (SF IdP)

Symptom

Customers may have the requirement to modify or customize the attributes sent by the SuccessFactors Identity Provider (SF IdP) in the SAML 2.0 assertion when integrating SuccessFactors with external applications.

For example, customers may want to:

  • Change the attribute name sent in the SAML assertion
  • Modify the attribute value format
  • Add additional attributes to the SAML payload

Environment

SAP SuccessFactors HCM Suite

Resolution

The SuccessFactors Identity Provider (SF IdP) sends a predefined set of SAML attributes as part of the SAML 2.0 authentication response, and these attributes are not configurable within SuccessFactors.

This limitation has been confirmed by the SuccessFactors Product Management team, and currently there is no configuration option or supported mechanism available to modify the attributes sent by the SF IdP.

See Also

  • 2791410 - Integrating SuccessFactors with Identity Authentication IAS through the Upgrade Center
  • 3653721 - Behavior of SAML User Column for IAS integration with SuccessFactors
  • SAP Community - Integrating-sap-successfactors-with-ias

Keywords

PLT, SFSF, SFIDP, Identity provider, SuccessFactors as IDP, Plarform , KBA , LOD-SF-PLT-SEL , SSO Errors & Logs , Problem

Product

SAP SuccessFactors HCM Suite all versions