Identity Management Attribute Information

eppn

Attribute: eppn
Name: eduPersonPrincipalName
Use: required
Description: The "NetID" of the person for the purposes of inter-institutional authentication. Should be stored in the form of [email protected], where univ.edu is the name of the local security domain.
SAML 1:
SAML 2: urn:oid:1.3.6.1.4.1.5923.1.1.1.6
Max Length: 128

mail

Attribute: mail
Name: mail
Use: required
Description: The mail attribute type specifies an electronic mailbox attribute following the syntax specified in RFC 822. Note that this attribute should not be used for greybook or other non-Internet order mailboxes.
SAML 1:
SAML 2: urn:oid:0.9.2342.19200300.100.1.3
Max Length: 64

sn

Attribute: sn
Name: Surname
Use: required
Description: This is the X.500 surname attribute, which contains the family name of a person.
SAML 1:
SAML 2: urn:oid:2.5.4.4
Max Length: 30

givenName

Attribute: givenName
Name: givenName
Use: required
Description: The givenName attribute is used to hold the part of a person's name which is not their surname nor middle name.
SAML 1:
SAML 2: urn:oid:2.5.4.42
Max Length: 20

affiliation

Attribute: affiliation
Name: eduPersonScopedAffiliation
Use: required
Description: Specifies the person's affiliation within a particular security domain in broad categories such as student, faculty, staff, alum, etc. The values consist of a left and right component separated by an "@" sign. The left component is one of the values from the eduPersonAffiliation controlled vocabulary. The right component identifies the security domain in the form of a dotted string value on the model of DNS domain names. This right-hand side syntax of eduPersonScopedAffiliation intentionally matches that used for the right-hand side values for eduPersonPrincipalName since both identify a security domain.
SAML 1:
SAML 2: urn:oid:1.3.6.1.4.1.5923.1.1.1.9

persistentID

Attribute: persistentID
Name: Persistent/Targeted ID
Use: requested
Description: See eduPersonTargetedID. A persistent, privacy-preserving identifier for a principal shared between a pair of coordinating entities, [...].
SAML 1:
SAML 2:

nickname

Attribute: nickname
Name: eduPersonNickname
Use: optional
Description: Person's nickname, or the informal name by which they are accustomed to be hailed.
SAML 1:
SAML 2:
Max Length: 20

title

Attribute: title
Name: title
Use: optional
Description: The Title attribute type specifies the designated position or function of the object within an organization.
SAML 1:
SAML 2: urn:oid:2.5.4.12
Max Length: 80

cn

Attribute: cn
Name: commonName
Use: optional
Description: This is the X.500 commonName attribute, which contains a name of an object. If the object corresponds to a person, it is typically the person's full name.
SAML 1:
SAML 2:
Max Length: 70

displayName

Attribute: displayName
Name: displayName
Use: optional
Description: The name(s) that should appear in white-pages-like applications for this person.
SAML 1:
SAML 2:
Max Length: 60

primaryAffiliation

Attribute: primaryAffiliation
Name: eduPersonPrimaryAffiliation
Use: optional
Description: Specifies the person's PRIMARY relationship(s) to the institution in broad categories such as student, faculty, staff, alum, etc.
SAML 1:
SAML 2:

street

Attribute: street
Name: street
Use: optional
Description: This attribute contains the physical address of the object to which the entry corresponds, such as an address for package delivery (streetAddress).
SAML 1:
SAML 2:
Max Length: 40

st

Attribute: st
Name: stateOrProvinceName
Use: optional
Description: Abbreviation for state or province name.
SAML 1:
SAML 2:
Max Length: 15

l

Attribute: l
Name: localityName
Use: optional
Description: This attribute contains the name of a locality, such as a city, county or other geographic region (localityName).
SAML 1:
SAML 2:
Max Length: 40

postalCode

Attribute: postalCode
Name: postalCode
Use: optional
Description: The postal code attribute type specifies the postal code of the named object. If this attribute value is present, it will be part of the object's postal address." Zip code in USA, postal code for other countries.
SAML 1:
SAML 2:
Max Length: 10

telephoneNumber

Attribute: telephoneNumber
Name: telephoneNumber
Use: optional
Description: Office/campus phone number. Attribute values should follow the agreed format for international telephone numbers: i.e., "+44 71 123 4567."
SAML 1:
SAML 2:
Max Length: 25