Shenavi de Mel
1 min readSep 12, 2018

--

Hi Krishna,

Have you set the correct role claim in your external IDP configuration on the Identity Server? Also have you checked if the roles are being correctly passed from the Azure AD to the commonauth endpoint of the Identity Server? If the role information is missing in the SAML response then the mapping will not happen. You can verify your SAML response using something like the SAML tracer.

--

--

Shenavi de Mel
Shenavi de Mel

Written by Shenavi de Mel

Lead Solutions Engineer at WSO2 | Loves coding | Loves writing

No responses yet