Forced reauthentication
David Bantz
dabantz at alaska.edu
Thu Aug 14 19:32:34 EDT 2014
or, simpler, get an SSO session with different SP (not the target SP you are configuring) integrated with your IdP, then initiate session with the target SP.
You expect
< maxTimeSinceAuthn results in SP session with no further authN
> maxTimeSinceAuthn requires re-authN
On Thu, 14 Aug 2014, at 15:23 , David Bantz <dabantz at alaska.edu> wrote:
> If you want to test the re-authentication required after 5 seconds, you’ll need to destroy the SP session cookie.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 163 bytes
Desc: Message signed with OpenPGP using GPGMail
Url : http://shibboleth.net/pipermail/users/attachments/20140814/06992ff0/attachment.bin
More information about the users
mailing list