When you enable the user name ID, the system authenticates the user based on the SAML name ID assertion XML field. The IdP server returns a distinct user name, such as an email address obtained from the user account. The name is not the local user name. This is the default behavior.
Syntax
[no] aaa authentication saml username nameid enable
Parameters
noStops using the name ID in the assertion XML field to authenticate users.
Example
The following example enables the name ID field to be used for authentication:
hostname (config) # aaa authentication saml username nameid enable
User role
Admin
Command mode
Config
Supported appliances
Central Management System: Release 8.7.1.
Network Security: Release 8.3.2
File Protect: Release 8.3.0