Is it possible to map the group as an attribute?



I am using AWS IAM as IDP from Root account with AWS SSO (not AD or external), so I have AWS SSO and a SAML application for Jenkins configured on the root account.

I have configured the SAML Jenkins app with the following attributes: Enter image description here

And i need propagate to Jenkins the groups to which that user belongs in the AWS SSO, to assign permissions in Jenkins according to the groups that the user has.

Is it possible?


1 Answer

I answer myself, I finally managed to get the AWS SSO groups ID with this configuration. Enter image description here

answered a year ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions