| 1 | <ClaimsProvider> |
| 2 | <Domain>id.me</Domain> |
| 3 | <DisplayName>ID.me</DisplayName> |
| 4 | <TechnicalProfiles> |
| 5 | <TechnicalProfile Id="IdMe-OAuth2"> |
| 6 | <DisplayName>IdMe</DisplayName> |
| 7 | <Protocol Name="OAuth2" /> |
| 8 | <Metadata> |
| 9 | <Item Key="ProviderName">api.id.me</Item> |
| 10 | <Item Key="authorization_endpoint">https://api.id.me/oauth/authorize</Item> |
| 11 | <Item Key="AccessTokenEndpoint">https://api.id.me/oauth/token</Item> |
| 12 | <Item Key="ClaimsEndpoint">https://api.id.me/api/public/v2/attributes.json</Item> |
| 13 | <Item Key="HttpBinding">POST</Item> |
| 14 | <Item Key="scope">openid alumni</Item> |
| 15 | <Item Key="UsePolicyInRedirectUri">0</Item> |
| 16 | <!-- Update the Client ID below to the Application ID --> |
| 17 | <Item Key="client_id">Your ID.me application ID</Item> |
| 18 | </Metadata> |
| 19 | <CryptographicKeys> |
| 20 | <Key Id="client_secret" StorageReferenceId="B2C_1A_IdMeSecret"/> |
| 21 | </CryptographicKeys> |
| 22 | <OutputClaims> |
| 23 | <OutputClaim ClaimTypeReferenceId="issuerUserId" PartnerClaimType="uuid" /> |
| 24 | <OutputClaim ClaimTypeReferenceId="givenName" PartnerClaimType="fname" /> |
| 25 | <OutputClaim ClaimTypeReferenceId="surname" PartnerClaimType="lname" /> |
| 26 | <OutputClaim ClaimTypeReferenceId="displayName" PartnerClaimType="name" /> |
| 27 | <OutputClaim ClaimTypeReferenceId="email" PartnerClaimType="email" /> |
| 28 | <OutputClaim ClaimTypeReferenceId="identityProvider" DefaultValue="me.id.com" AlwaysUseDefaultValue="true" /> |
| 29 | <OutputClaim ClaimTypeReferenceId="authenticationSource" DefaultValue="socialIdpAuthentication" AlwaysUseDefaultValue="true" /> |
| 30 | </OutputClaims> |
| 31 | <OutputClaimsTransformations> |
| 32 | <OutputClaimsTransformation ReferenceId="CreateRandomUPNUserName" /> |
| 33 | <OutputClaimsTransformation ReferenceId="CreateUserPrincipalName" /> |
| 34 | <OutputClaimsTransformation ReferenceId="CreateAlternativeSecurityId" /> |
| 35 | <OutputClaimsTransformation ReferenceId="CreateDisplayNameFromFirstNameAndLastName" /> |
| 36 | </OutputClaimsTransformations> |
| 37 | <UseTechnicalProfileForSessionManagement ReferenceId="SM-SocialLogin" /> |
| 38 | </TechnicalProfile> |
| 39 | </TechnicalProfiles> |
| 40 | </ClaimsProvider> |