> My question is, has anyone else encountered a situation like this? And > if so, how did you handle it? IdP-side authorization was built into V3, see the context-check interceptor. -- Scott