MCB, detecting that a different profile is being requested ...
Steven Carmody
steven_carmody at brown.edu
Tue Dec 2 17:27:33 EST 2014
Yes, the "real" previous session manager was removed.
Sent from my iPhone
On Dec 2, 2014, at 5:22 PM, Scott Koranda <skoranda at gmail.com> wrote:
> On Tue, Dec 2, 2014 at 9:58 PM, Steven Carmody <steven_carmody at brown.edu> wrote:
>> Hi,
>>
>> I'm using the MCB with my IDP, and I've configured authMethods for
>> password and duo (I'm using David's DUO package). I can access an SP
>> that requires only password, and that works fine. If I then access an SP
>> that requires DUO, I'm allowed in (apparently) by the previous session
>> manager. Interestingly, if I start by accessing an SP that requires DUO,
>> it works as expected -- asks for a password, and then triggers the DUO
>> support.
>
> When you say "previous session manager" do you mean the standard IdP previous
> session manager or the previous session capability of the MCB itself?
>
> I ask because normally one removes the IdP's previous session
> manager/handler from
> the configuration when enabling the MCB login manager.
>
> Thanks,
>
> Scott K
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list