<div dir="ltr">Hi,<br><br>I am researching authentication with second factor.<br><br>The proposal is the use of ApplicationOverride (SP) setting a new Endpoint (handlerURL) to second factor authentication. Where:<br>- Endpoint A (ApplicationDefaults):  user and password authentication;<br>- Endpoint B (ApplicationOverride): second factor authentication.<br><br>The IdP has a subflow for the second factor TOTP based.<br><br>The questions are:<br>- It is a viable way within the IdP / SP architecture?<br>- How to identify within the flow (SWF) the endpoint forward authentication request, for to select the flow two-factor or password?<br clear="all"><div><br>-- <br><div class="gmail_signature"><div dir="ltr"><div class="gmail_signature"><div dir="ltr"><div><font color="#666666">---------------------------------<br>Sérgio Nicolau da Silva <br><a href="mailto:sergions@gmail.com" target="_blank">sergions@gmail.com</a></font><br></div></div></div></div></div>
</div></div>