Forced reauthentication

David Bantz dabantz at alaska.edu
Thu Aug 14 19:32:34 EDT 2014


or, simpler, get an SSO session with different SP (not the target SP you are configuring) integrated with your IdP, then initiate session with the target SP.
You expect 
	< maxTimeSinceAuthn results in SP session with no further authN
	> maxTimeSinceAuthn requires re-authN

On Thu, 14 Aug 2014, at 15:23 , David Bantz <dabantz at alaska.edu> wrote:

> If you want to test the re-authentication required after 5 seconds, you’ll need to destroy the SP session cookie.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 163 bytes
Desc: Message signed with OpenPGP using GPGMail
Url : http://shibboleth.net/pipermail/users/attachments/20140814/06992ff0/attachment.bin 


More information about the users mailing list