internal/AdfsSamples/Zscaler.json
{
"AllowedAuthenticationClassReferences": [ ], "EncryptionCertificateRevocationCheck": 5, "PublishedThroughProxy": false, "SigningCertificateRevocationCheck": 5, "WSFedEndpoint": null, "AdditionalWSFedEndpoint": [ ], "ClaimsProviderName": [ ], "ClaimsAccepted": [ ], "EncryptClaims": true, "Enabled": true, "EncryptionCertificate": null, "Identifier": [ "https://zscaler.net" ], "NotBeforeSkew": 0, "EnableJWT": false, "AlwaysRequireAuthentication": false, "Notes": null, "OrganizationInfo": "", "ObjectIdentifier": "aff43569-c732-ed11-a812-000d3a9bbe83", "ProxyEndpointMappings": { }, "ProxyTrustedEndpoints": [ ], "ProtocolProfile": "WsFed-SAML", "RequestSigningCertificate": [ ], "EncryptedNameIdRequired": false, "SignedSamlRequestsRequired": false, "SamlEndpoints": [ { "Binding": "POST", "BindingUri": "urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST", "Index": 0, "IsDefault": false, "Location": "https://login.zscaler.net/sfc_sso", "Protocol": "SAMLAssertionConsumer", "ResponseLocation": null } ], "SamlResponseSignature": "AssertionOnly", "SignatureAlgorithm": "http://www.w3.org/2001/04/xmldsig-more#rsa-sha256", "TokenLifetime": 0, "AllowedClientTypes": 6, "IssueOAuthRefreshTokensTo": 2, "RefreshTokenProtectionEnabled": true, "RequestMFAFromClaimsProviders": false, "ScopeGroupId": null, "Name": "Zscaler", "AutoUpdateEnabled": false, "MonitoringEnabled": false, "MetadataUrl": null, "ConflictWithPublishedPolicy": false, "IssuanceAuthorizationRules": "", "IssuanceTransformRules": "@RuleName = \"Zscaler-SAML_Claim_Rule\"\r\nc:[Type == \"http://schemas.microsoft.com/ws/2008/06/identity/claims/windowsaccountname\", Issuer == \"AD AUTHORITY\"]\r\n =\u003e issue(store = \"Active Directory\", types = (\"http://schemas.xmlsoap.org/ws/2005/05/identity/claims/nameidentifier\", \"displayName\", \"department\", \"memberOf\"), query = \";userPrincipalName,displayName,department,tokenGroups;{0}\", param = c.Value);\r\n\r\n", "DelegationAuthorizationRules": "", "LastPublishedPolicyCheckSuccessful": null, "LastUpdateTime": "\/Date(-2208988800000)\/", "LastMonitoredTime": "\/Date(-2208988800000)\/", "ImpersonationAuthorizationRules": "", "AdditionalAuthenticationRules": "", "AccessControlPolicyName": "Permit everyone", "AccessControlPolicyParameters": null, "ResultantPolicy": { "IsParameterized": false, "Serialized": "\u003cPolicyMetadata xmlns:i=\"http://www.w3.org/2001/XMLSchema-instance\" xmlns=\"http://schemas.datacontract.org/2012/04/ADFS\"\u003e\r\n \u003cRequireFreshAuthentication\u003efalse\u003c/RequireFreshAuthentication\u003e\r\n \u003cIssuanceAuthorizationRules\u003e\r\n \u003cRule\u003e\r\n \u003cConditions\u003e\r\n \u003cCondition i:type=\"AlwaysCondition\"\u003e\r\n \u003cOperator\u003eIsPresent\u003c/Operator\u003e\r\n \u003cValues /\u003e\r\n \u003c/Condition\u003e\r\n \u003c/Conditions\u003e\r\n \u003c/Rule\u003e\r\n \u003c/IssuanceAuthorizationRules\u003e\r\n\u003c/PolicyMetadata\u003e", "Summary": "RequireFreshAuthentication:False\nIssuanceAuthorizationRules:\n{\r\n Permit everyone\r\n}", "ExtensionData": { } } } |