SCIM validator fails "Filter for an existing user with a different case" on case sensitive "externalId"

Ondřej Janošík 0 Reputation points
2025-10-09T16:52:41.57+00:00

According to SCIM RFC 7643 - Scim Core Schema - Section 3.1 - Common Attributes, the attribute externalId is described as case exact:

This attribute has "caseExact" as "true" and a mutability of "readWrite".

However the SCIM Validator tries to filter on this attribute with different case and fails.

I think it's related to "joining property" of the validator's attribute mapping, because when I select case insensitive userName, it passes the test. Shouldn't validator skip this case sensitivity test when externalId is selected?

Correlation ID: 9dce04e8-24fb-4e6d-b3b8-2dde187d3010
Timestamp (UTC): 2025-10-09T16:00:55.335Z

User's image Ignore the PATCH errors, that's not implemented yet.

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.