Comments (7)
Hello,
Thanks for the info and links. Yeah we noticed it and named the attribute as the code expects. It is mapped correctly although as I mentioned group id is there not the name. Indeed it seems to be Azure's 'feature' ;) Currently we are working on a piece of logic in the Cognito event to map ids to names before token is generated.
from aws-dataall.
Sure thing, let's keep in touch on the topic.
from aws-dataall.
Hi @dosiennik,
Did you follow the steps listed in the following guide?
Azure+Active+Directory+Integration+with+Amazon Cognito+User+Pools.pdf
There is an step in which we need to map the attributes from Microsoft AD to Cognito ones. For groups we have to create a custom attribute.
from aws-dataall.
Hi @dlpzx,
Thanks for sharing the guide. Yeah as far as I see we proceed as described for the group mapping. Although looks like Azure ID is able to return only group identifiers, not names so as a result we see group ids in the UI. That's why wanted to check if you have experienced a similar case and know how it can be handled.
from aws-dataall.
Hello,
Quick note: in the guide Azure+Active+Directory+Integration+with+Amazon Cognito+User+Pools.pdf, the name of the custom attribute should be saml.groups instead of groups. Otherwise it will not work (reference to the code)
And I also faced the same issue with Azure AD group ID. It seems it has been there for a while (stackoverflow issue). As mentioned in this post, I believe the only way is to do what you mentioned, which is implementing some kind of logic that calls Microsoft Graph to map group ID with their name.
This would work well as long as you don't change the group name in Azure.
from aws-dataall.
Alright, could you please share this piece of code when it will be ready ? I believe it will be extremely helpful for everyone federating Azure AD with Cognito.
from aws-dataall.
⚠️ COMMENT VISIBILITY WARNING⚠️
Comments on closed issues are hard for our team to see.
If you need more assistance, please either tag a team member or open a new issue that references this one.
If you wish to keep having a conversation with other community members under this issue feel free to do so.
from aws-dataall.
Related Issues (20)
- Add Dataset Description to the Shares View HOT 1
- Environment stack into UPDATE_COMPLETE_ROLLBACK state because of missing permissions in DataAllCustomCDKPolicy HOT 4
- Ability to manage and share views created from Athena HOT 1
- Revoking shares fails for deleted consumer roles HOT 3
- Documentation - add troubleshooting section to GitHub pages
- Environment update fails due to missing CloudFormation permissions HOT 1
- Feature flags for topics and confidentiality and custom text list for confidentiality HOT 5
- Do not allow to register invalid teams for environments HOT 1
- Switch project to absolute imports
- Data All Architecture HOT 2
- Maximum policy size of 10240 bytes exceeded HOT 4
- Multiple Pipelines causing failures to each other HOT 4
- Pipeline Failure: DeployFrontEnd Stage - cannot import name 'is_s3express_bucket' from 'botocore.utils' HOT 1
- Migrating from manual pivotRole to cdkRole makes table shares unrevokable HOT 3
- Configuration to enable Graphql playground HOT 4
- Automating bootstrap environment account's step HOT 3
- In Admin settings Teams Permission Dialog Opens Blank HOT 2
- Implement metadata forms HOT 1
- Handling Pre-existing Endpoints in AWS CDK Constructs Using data.all HOT 3
- 1 revoke share and 1 approve share request running in parallel can override each other HOT 3
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from aws-dataall.