5

According to this documentation, the Policy Name should be in the TFP (Trust Framework Policy) claim but it is showing up in the ACR claim. I started with the Starter Pack

enter image description here


ID Token w/ ACR Claim containing the Policy Name

id token w/ acr claim


Also, further down in the documentation it says the ACR is where the Policy Name will be:

acr documentation

Related SO Post

spottedmahn
  • 14,823
  • 13
  • 108
  • 178

2 Answers2

7

It is recommended you issue the policy ID in the "tfp" claim. If you are creating custom policies, then you can issue this by configuring the "JwtIssuer" technical profile. You can learn more about this at here.

Chris Padgett
  • 14,186
  • 1
  • 15
  • 28
3

This is actually configurable, so it does not matter so long as you configure your application to use whichever you choose.

Go to B2C_1_YourPolicy -> edit -> 'Token, session & SSO config' and flip the toggle for the "Claim representing policy ID" field. You can choose either tfp or acr.

azure portal

spottedmahn
  • 14,823
  • 13
  • 108
  • 178
Pytry
  • 6,044
  • 2
  • 37
  • 56