Texas A&M University - Infrastructure Services

Higher Ed Scoped Affiliations (eduPersonScopedAffiliation)

Definition: The account owner's affiliation (role) within the identity provider's domain.
Attribute Name: 'eduPersonScopedAffiliation'
OID: 1.3.6.1.4.1.5923.1.1.1.9
URN: urn:oid:1.3.6.1.4.1.5923.1.1.1.9
Object Class: eduPerson
Required: no
Multiple Values: Multi-valued
Format: Directory String
The values consist of a left and right component separated by an "@" sign. The left component is one of the values from the eduPersonAffiliation controlled vocabulary. The right component identifies the role's domain. For the eduPersonScopedAffiliation, the syntax of the right component matches that used for the right component of the eduPersonPrincipalName value, "tamu.edu".
Controlled Vocabulary: faculty@tamu.edu, staff@tamu.edu, student@tamu.edu, employee@tamu.edu, member@tamu.edu, affiliate@tamu.edu
Source: Every value in eduPersonAffiliation will have a corresponding value in eduPersonScopedAffiliation.
If eduPersonAffiliation includes faculty => faculty@tamu.edu
If eduPersonAffiliation includes staff => staff@tamu.edu
If eduPersonAffiliation includes student => student@tamu.edu
If eduPersonAffiliation includes employee => employee@tamu.edu
If eduPersonAffiliation includes member => member@tamu.edu
If eduPersonAffiliation includes affiliate => affiliate@tamu.edu
Indexing: none
Search Syntax: EQUALITY caseIgnoreMatch
Access: Account owner has read access. Authenticated and nonauthenticated (anonymous) users have no access.
Usage:
Example(s): staff@tamu.edu, employee@tamu.edu, student@tamu.edu, member@tamu.edu