ForceAuthn based on IDP entityId

Cantor, Scott cantor.2 at osu.edu
Fri Feb 19 13:21:45 UTC 2021


On 2/18/21, 10:02 PM, "Dan McLaughlin" <dmclaughlin at tech-consortium.com> wrote:

>    Is there a way to cause maxTimeSinceAuthn to trigger a redirect to the
>    IDP for authentication with ForceAuthn=true instead of throwing a
>    "FatalProfileException - The gap between now and the time you logged
 >   into your identity provider exceeds the limit."

Yes, the redirectErrors setting, to a script you control.

-- Scott




More information about the dev mailing list