Hi @zhaoqs
When configuring the SAML application in Okta, you can set up the Attribute Statements, for example
This will send the user’s email in a claim inside the SAML assertion. Your application can take the SAML response received from Okta, decode it and retrieve the user’s email.
If your users have the same value for email and username, you can skip the part above and retrieve the user’s email from NameID, provided they have the same username set inside the application.
