AUTHN_CONTEXT Functionality in v3
Marvin Addison
marvin.addison at gmail.com
Tue Apr 14 10:22:12 EDT 2015
In v2 we leveraged a feature (undocumented afaict) whereby we could set a
request attribute called AUTHN_CONTEXT (e.g. via servlet filter) to a value
that would pass through to the outgoing SAML response as the
AuthenticationMethod. The use case was defining the authentication method
based on artifacts of a remote user authentication event. I don't see any
equivalent mechanism available in v3, and it appears the data model maps a
flow definition onto a single authentication method, which doesn't really
accommodate this use case. I would appreciate some pointers on how we might
accommodate this use case in v3.
Thanks,
Marvin
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20150414/e148fed3/attachment.html
More information about the users
mailing list