OIDC 0.9 extension

Cantor, Scott cantor.2 at osu.edu
Fri Mar 29 14:12:09 EDT 2019


On 3/29/19, 2:05 PM, "dev on behalf of Jim Fox" <dev-bounces at shibboleth.net on behalf of fox at washington.edu> wrote:

> Somewhere maybe I'm not setting something, however, my SAML responses always return the correct 
> AuthnContextClassRef, but with OIDC the acr is always 'password'.

In case it's relevant, the only reason the SAML flows tend to return "correct" values is that there's a weight map of the values that it uses to pick the "best" one to return. You may have to manipulate that and include other values specific to OIDC, I don't know. It may also just not be implemented in the OIDC code the same way yet.

-- Scott




More information about the dev mailing list