Turns out I selected the SAML2-2 service definition template by mistake.
Selecting the SAML2-1template preserved the attribute release policy.
However, a manual would still be extremely beneficial.
On Tuesday, May 26, 2026 at 3:38:50 p.m. UTC-2:30 Mike S wrote:
> Does a howto or user manual exist for creating service entries with the
> new Palantir application?
>
> It does some automated things like generate ID numbers and apparently
> rewrite the json.
>
> I created a SAML2 entry with the following attribute:
>
> "attributeReleasePolicy" : {
> "@class" :
> "org.apereo.cas.services.ReturnAllowedAttributeReleasePolicy",
> "excludeDefaultAttributes" : true,
> "authorizedToReleaseAuthenticationAttributes" : false,
> "principalIdAttribute" : "uid",
> "allowedAttributes" : [ "java.util.ArrayList", [ "uid" ] ]
> }
>
> but palantir rewrote it to:
>
> "attributeReleasePolicy": {
> "@class": "org.apereo.cas.services.ChainingAttributeReleasePolicy",
> "mergingPolicy": "REPLACE",
> "consentPolicy": {
> "@class":
> "org.apereo.cas.services.consent.ChainingRegisteredServiceConsentPolicy"
> },
> "principalAttributesRepository": {
> "@class":
> "org.apereo.cas.authentication.principal.ChainingPrincipalAttributesRepository"
> },
> "authorizedToReleaseAuthenticationAttributes": true
> }
>
> What's going on here?
>
--
- Website: https://apereo.github.io/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
---
You received this message because you are subscribed to the Google Groups "CAS
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to [email protected].
To view this discussion visit
https://groups.google.com/a/apereo.org/d/msgid/cas-user/fd9aa8e0-29d2-441a-a6f2-8840cd3d400bn%40apereo.org.