Jamf Pro now supports the username claim as a mapping option for OIDC-based single sign-on (SSO) through Jamf Account, providing an alternative to email-based user mapping. To use this feature, choose the option under Identity Provider User Mapping when configuring your SSO connection settings in Jamf Pro. For complete instructions, see SSO with OIDC Through Jamf Account in the Jamf Pro Documentation.
Not all IdPs support the username claim by default. If necessary, you can map a different attribute from your IdP to the Identity Provider User Mapping attribute in Jamf Account. This can be done with the Custom Mapping settings for generic OIDC connections or the Custom Username Claim Name setting for Entra ID and Google Identity connections. See Adding an SSO Connection in the Jamf Account Documentation for information specific to your environment, or contact Jamf Support for assistance.