Azure广告组成员资格声明 [英] Azure ad group membership claims

查看:80
本文介绍了Azure广告组成员资格声明的处理方法,对大家解决问题具有一定的参考价值,需要的朋友们下面随着小编来一起学习吧!

问题描述

我已将Azure AD中应用程序清单中的groupMembershipClaims属性设置为全部",这将导致在ID令牌中返回用户的安全组成员身份.

I've set the groupMembershipClaims property in an app's manifest in Azure AD to "All", which should result in a user's security group memberships to be returned in the id token.

但是,没有将它们退回.尝试多次重新登录.我明显在做错什么吗?

However, they are not being returned. Have tried to re-login multiple times. Is there something I am doing obviously wrong?

推荐答案

很抱歉在这里浪费人们的时间.我向朋友问这个问题,结果发现他们正在查看访问令牌,而不是ID令牌.

Sorry for wasting people's time here. I was asking this question for a friend, and turns out they were looking at the access token, not the id token.

因此,作为以后的参考,请确保您正在向AAD请求一个id令牌,并使用它来确定组成员身份.

So as future reference, make sure you are requesting an id token from AAD, and use that to figure out things like group memberships.

这篇关于Azure广告组成员资格声明的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!

查看全文
登录 关闭
扫码关注1秒登录
发送“验证码”获取 | 15天全站免登陆