external-user-identity-attribute
Use the external-user-identity-attribute entry to indicate which STSUU attribute in the RSTR contains the external user identity that can perform OAuth authentication. Remove this configuration entry if we do not want to allow authentication using an external user identity.
external-user-identity-attribute = attribute_name
Description
If this entry is set, the appliance searches for an external user identity in the STSUU. If an external user identity is present, it will be used without further changes. If this entry is not configured, an external user identity cannot be used to authenticate the user.
Options
attribute_name The name of the external user identity attribute to be extracted from the RSTR.
Usage: Optional
Default value
am-ext-user-id
Example:
external-user-identity-attribute = am-ext-user-id