How to override "id claim" in Openshift openid identity provider ?

Solution Verified - Updated -


  • id claim is fixed to sub in openshift 4.X for security reasons.

  • In certain cases as ADFS (Active Directory Federated Services) we need to override it because of a known bug where special characters are not allowed.

  • Notice this workaround IS NOT SUPPORTED.


  • Red Hat Openshift Container Platform 4.X

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content