Managing attributes
Attributes provide a mechanism to include more attributes to share with an application. The attributes can contain specific information such as company name or user attributes that are obtained from the user-authenticated session. The attributes that are defined in
are used for attribute mapping during application onboarding in Sign-on. For applications that support lifecycle, attributes can also be mapped through .Before you begin
- You must have administrative permission to complete this task.
- Log in to the IBM® Security Verify administration console as an Administrator.
About this task
Verify can act as a single sign-on identity provider or a service provider. In this task, Verify is the identity provider, and the target application is the service provider.

- Modify the tagging (Provisioning and Single sign-on).
- Add more identity source credential maps.
- Modify the default value.
Define other attribute sources that are not available by default if the application service provider requires the identity provider to include them in the SAML assertion. Otherwise, you do not need to create more attribute sources.
Name | Value | Description |
---|---|---|
department |
department |
Name of the department where the user is a member. |
email |
email |
Email address of the user where notification is sent. |
employee_id |
employee_id |
Unique identifier of the user in the organization. |
family_name |
family_name |
Surname of the user. |
given_name |
given_name |
Given name of the user. |
groupIds |
groupIds |
Group display names from the Verify cloud directory. |
job_title |
job_title |
Job title of the user in the organization. |
mobile_number |
mobile_number |
Mobile number of the user where notification is sent. |
name |
name |
A combination of the given_name and family_name . |
preferred_username |
preferred_username |
Username that is used to log in to the identity provider. |
realmName |
realmName |
It is an identity provider attribute that helps distinguish users
from multiple identity providers that have the same username. It uses the Realm value that is provided in the panel. For the following identity providers:
If Realm was not defined in Identity providers,
If there is no incoming |
tenantId |
tenantId |
A unique identifier that is assigned to the Verify subscription. |
uid |
uid |
Unique identifier of the user in the Verify cloud directory. |