Duo IdPv3.3 c14n null principal.
IAM David Bantz
dabantz at alaska.edu
Wed Dec 28 16:40:21 EST 2016
On Wed, Dec 28, 2016 at 11:43 AM, O'Dowd, Josh <Josh.O'Dowd at mso.umt.edu>
wrote:
> I think we just need some advice on how to implement our policy where
> expired, expiring, or reset password conditions occur. Again, we just want
> to sub-flow these so that we can get password renewed, and then send user
> on their way to their requested service.
That seems to my perhaps naive eyes to be building a lot of customization
into the Identity Provider to have it act as a credential manager. We use
an alternative strategy of referring any "help with credentials" issue to a
separate service dedicated to helping folks maintain directory-based
credentials. Just offering a different perspective.
David Bantz
UA OIT IAM
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20161228/39d83d34/attachment-0001.html>
More information about the users
mailing list