Repeated Login with Shib (idp) and ADFS (sp)

Cantor, Scott cantor.2 at osu.edu
Fri Jan 23 09:24:36 EST 2015


On 1/23/15, 1:02 PM, "Thomas Jones" <thomas.jones.g at gmail.com> wrote:


>
>1. Do you know if there's something that can be done on Shib's Idp side 
>when it receives this SAML AuthnRequest (that has the ForceAuthn = true) 
>and get from a session or a cookie info that can used to create a SAML 
>Response that doesn't require to force the user to a whole authentication 
>process (somehow a silent authentication)?

That would be a violation of the spec, but how you authenticate people is 
up to you in the end.

-- Scott



More information about the users mailing list