


Multi-Pass<MULESOFT_SUBDOMAIN>.anypoint.mulesoft.com| Field | Value |
|---|---|
| Username Attribute | NameID |
| First Name Attribute | firstName |
| Last Name Attribute | lastName |
| Email Attribute | email |
| Group Attribute | Blank |
| Field | Value |
|---|---|
| Client ID (=SP Entity ID) | <MULESOFT_SUBDOMAIN>.anypoint.mulesoft.com |
| Name | mulesoft |
| Description | Mulesoft SSO integration |
| Assertion Consumer Service URL | https://anypoint.mulesoft.com/accounts/login/<MULESOFT_SUBDOMAIN>/providers/6e596925-772b-4cc8-aed3-f73950493a8d/receive-id |
| NameID Policy Format | Username |
| Field | Value |
|---|---|
| Home URL (IdP-initiated) | https://ca.auth.kzero.com/realms/<TENANT_NAME>/protocol/saml/clients/<APP_NAME> |
| Valid Redirect URIs (ACS) | https://anypoint.mulesoft.com/accounts/login/<MULESOFT_SUBDOMAIN>/providers/6e596925-772b-4cc8-aed3-f73950493a8d/receive-id |
| IDP-Initiated SSO URL Name | <APP_NAME> |
| Setting | Value |
|---|---|
| Name ID Format | username |
| Force Name ID Format | OFF |
| Force POST Binding | ON |
| Include AuthnStatement | ON |
| Setting | Value |
|---|---|
| Sign Documents | ON |
| Sign Assertions | ON |
Configure User Property mappers to pass user attributes correctly:
| Field | Value |
|---|---|
| Mapper type | User Property |
| Name | firstName |
| Property | firstName |
| Friendly Name | Firstname |
| SAML Attribute Name | firstName |
| SAML Attribute NameFormat | Basic |
| Field | Value |
|---|---|
| Mapper type | User Property |
| Name | lastName |
| Property | lastName |
| Friendly Name | lastname |
| SAML Attribute Name | lastName |
| SAML Attribute NameFormat | Basic |
| Field | Value |
|---|---|
| Mapper type | User Property |
| Name | |
| Property | |
| Friendly Name | |
| SAML Attribute Name | |
| SAML Attribute NameFormat | Basic |
| Field | Value |
|---|---|
| Mapper type | User Property |
| Name | username |
| Property | username |
| Friendly Name | NameID |
| SAML Attribute Name | NameID |
| SAML Attribute NameFormat | Basic |