是否有办法通过邮递员列出分配给应用程序的用户名。我不是在寻找Okta用户名,而是要传递给SP的用户名。如果是,是否有办法将响应限制为仅限于该值而不是列出用户时返回的所有值?
答案 0 :(得分:0)
很棒的问题。
您想要获得的是SAML断言发送的内容吗?
我能够使用这样的东西得到它:
oktaorg../api/v1/apps/0oa1775fsuhaO5wKD1d8/users/00uy74c0h7NGTLBSXQOC
这是它返回的内容
{ "id": "00uy74c0h7NGTLBSXQOC",
"externalId": null,
"created": "2017-03-10T19:17:05.000Z",
"lastUpdated": "2017-03-10T19:17:05.000Z",
"scope": "GROUP",
"status": "ACTIVE",
"statusChanged": "2017-03-10T19:17:05.000Z",
"passwordChanged": null,
"syncState": "DISABLED",
"lastSync": null,
"credentials": {
"userName": "oktaadmin2@okta.com" /*this is what you want I think */
},
"profile": {},
"_links": {
"app": {
"href": "https://companyx.okta.com/api/v1/apps/0oa1775fsuhaO5wKD1d8"
},
"group": {
"name": "Everyone",
"href": "https://companyx.okta.com/api/v1/groups/00gy74c0gzOSVLSLVYIG"
},
"user": {
"href": "https://companyx.okta.com/api/v1/users/00uy74c0h7NGTLBSXQOC"
}
}
}