Authn Better Matching

Marvin Addison marvin.addison at gmail.com
Mon May 4 12:03:15 EDT 2015


>
> The Shibboleth SP supports the other operators via authnContextComparison.
>

Yeah, I just realized that. (SAML ignorance was the root problem.) Adding
the following directive to the SP gets my IdP configuration working like I
had expected:

ShibRequestSetting authnContextComparison better

This leads to a new question: is it common for SPs to specify custom
matching semantics when specifying a required authn context class?

Thanks,
M <users-unsubscribe at shibboleth.net>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20150504/138fe6c6/attachment.html>


More information about the users mailing list