Mapping users by email

Some institutions may already have an iThenticate account and would like to use Shibboleth as their SSO solution.

The first time the Shibboleth user logs into iThenticate using SSO, their account will be linked to the existing iThenticate account. To enable this request, your Shibboleth integration must be configured to map user accounts by email.  Your IdP must then provide the “mail” attribute, prompting iThenticate to look for an existing user in your account with a matching email address.  The email address must be unique within the iThenticate system for your account.

Use caution when enabling this feature. If you allow your users to add or modify their own email address in your IdP or user directory service, this could allow access to other user data in iThenticate.