I have been tasked to create an IDP initiated SAML 2.0 federation with a
partner. As a requirement, the trusted partner is asking for us to send
the memberOf attribute in the assertion. The problem that I am facing
is that this is a multi-value attribute. They specifically need a
single value (ex. memberOf=Marketing) out of the memberOf attribute.
My question is, without an IDM product, does anyone have an idea how I
can parse out a group from the multi-value and send it in the
Thanks all!

