Forum Discussion
Jan 22, 2017
You can add an 'AD query' agent to the access policy and use the following SearchFilter and set SAMAccountName as a 'Required Attribute'. After that you can read the SAMAccountName from 'session.ad.last.attr.sAMAccountName'.
(userPrincipalName=%{session.logon.last.upn})