SSO User Syncing & Form Class (Year Level) Categories
When patrons log in to ePlatform using Single Sign-On (SSO), their user accounts are created or updated automatically based on the data sent by your identity provider or LMS.
If student accounts are being created upon sign-in but form class categories (or year levels) are missing or not assigning properly, review the details below.
How SSO Year Level Mapping Works
During SSO login, ePlatform relies on specific SAML attributes or claim mappings sent by your identity provider (such as Microsoft Entra ID / Azure, Google Workspace).
Automatic Sync: If your SSO setup includes attribute mapping for the form class or group, ePlatform will automatically assign the patron to that Year Level upon their first sign-in.
Missing Attributes: If your SSO SAML assertions only send basic attributes (e.g., Name, Email, Username/Barcode), ePlatform will create the account, but Year Level details will remain blank.
Recommended Solutions
Option 1: Update Your SSO Attribute Mappings (Recommended)
To have form classes sync automatically on every login, ensure your IT or system administrator includes the form class field in the SSO SAML attribute/claim assertion configuration. Once mapped, any updates in your source system will reflect in ePlatform when students sign in.
Note: Once mapped, please let us know so we can configure our system to automatically capture and align the year levels based on the attributes you are sending.
Option 2: Bulk Update Categories via Spreadsheet
If your SSO integration is configured to pass only authentication details and not user metadata like form classes, you can easily populate categories in bulk:
Log in as an administrator and go to Admin > Patrons.
Click Import/Update Patrons to download your current patron list.
Fill in or update the Year Level column with the correct form class (year level) for each student.
Upload the updated file.
Note: Updating categories via CSV import will not interfere with SSO login. Students will continue using their normal SSO credentials while displaying their assigned form class in ePlatform. However, this only applies if you are not sending any year-level or role-related attributes via SAML.