Hi
Johannes Decca-Winding
thank you for the reply. I am so glad you found this helpful and thanks for the feedback, too!!
Regarding the feedback, Configure which and how the new claim-attribute is mapped from azure:
I am not sure what exactly you mean.....I went back into my azure configuration and under the path Enterprise applications - All applications, my selected app (SP16T2-SharePoint on-premises - Single sign-on), then clicking on SAML-based sign-on, then User Attributes & Claims, I see a value for user.groups but there is no claim name, name or namespace configured for it. only the value of user.group. Also, I don't recall adding it there myself (I totally could have and forgot about it). The other claims showing up are there by default. Do you mean this or some other place in Azure? I will like to understand what specifically you mean, please.
Kind regards,
Melissa