Change Unique Identifier to Something other than Email Address
This is the grouping for the common request for Box to use a unique identifier other than email address for managed users.
Key pain point with the fact that Box uses email address as the unique identifier: Email addresses change often in large companies, thus requiring these companies to use custom API scripting to keep emails in Box updated based on changes in AD.
This unique identifier (whether a mapped value from the customer's user store, aka AD, or the Box unique user ID) should also be the identifier used when users authenticate to Box using SSO (via SAML).
This feature request isn’t currently planned on the roadmap, but we are considering the notion of user attributes that can be placed on a user and then used for better context while sharing / collaborating and searching in the Admin Console.
Please provide more use cases in the comments to help us understand the problem better.
-
Anonymous commented
Changing the Unique Identifier would be a game changer in terms of implementing SSO with Azure ad.
-
Rich commented
This is important for Enterprise accounts which want to control all users as Managed accounts, including "external" users from other organizations. In these cases, other organizations may already own the official email address of that user, forcing the use of a "fake" email address to ensure uniqueness and then configuring their real email as the Notification Email. However, this workaround is not ideal and has many limitations.