MCB, detecting that a different profile is being requested ...
Steven Carmody
steven_carmody at brown.edu
Tue Dec 2 17:34:21 EST 2014
On 12/2/14 5:27 PM, Steven Carmody wrote:
> Yes, the "real" previous session manager was removed.
and all of the log file lines that I included were output by the
MCBLoginServlet.
>
> Sent from my iPhone
>
> On Dec 2, 2014, at 5:22 PM, Scott Koranda <skoranda at gmail.com> wrote:
>
>> On Tue, Dec 2, 2014 at 9:58 PM, Steven Carmody <steven_carmody at brown.edu> wrote:
>>> Hi,
>>>
>>> I'm using the MCB with my IDP, and I've configured authMethods for
>>> password and duo (I'm using David's DUO package). I can access an SP
>>> that requires only password, and that works fine. If I then access an SP
>>> that requires DUO, I'm allowed in (apparently) by the previous session
>>> manager. Interestingly, if I start by accessing an SP that requires DUO,
>>> it works as expected -- asks for a password, and then triggers the DUO
>>> support.
>>
>> When you say "previous session manager" do you mean the standard IdP previous
>> session manager or the previous session capability of the MCB itself?
>>
>> I ask because normally one removes the IdP's previous session
>> manager/handler from
>> the configuration when enabling the MCB login manager.
>>
>> Thanks,
>>
>> Scott K
>> --
>> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list