- External field (left, labeled “Role Identifier”): the exact value your corporate system sends to identify a group or department (for example,
Managers,HR, orStudents). You type this in manually. The match is case-sensitive. - Workspace role (right, a dropdown): the permission level for the entire company workspace in Edplay. You select this from the list.
Map a role
1
Add a new row
Click Add field to create a new row.
2
Enter the Role Identifier
In the External field box on the left (labeled “Role Identifier”), type the exact group or department value your system sends (for example,
Managers).3
Select the Workspace role
In the Workspace role dropdown on the right, choose the role this group should receive (for example, Admin, Colleague, or Guest).
4
Repeat for each group
Repeat for each group or department in your company that needs its own mapping.
Important behavior to know
If a user’s role value does not match any row, they are assigned Guest on every login. This is why manually promoting a user gets reset back to Guest at the next SSO sign-in.
- Only the first role is used. If your IdP sends several roles for one user, only the first value is checked.
- Not sure what your IdP sends? Check the attribute names and values in your IdP’s SSO or SAML application settings, or ask your IT or identity administrator, then paste those exact strings into the External fields.
Save your settings
Click Save. If all required fields are filled in, you will see a success confirmation. If something required is missing, you will see an error. Go back and complete the missing fields (a Workspace role is required for each mapped group).Wizard buttons
Next: After Setup