Mapping an x509 cert to one of multiple possible accounts

Cantor, Scott cantor.2 at osu.edu
Thu Nov 9 11:08:29 EST 2017


On 11/9/17, 11:04 AM, "Cantor, Scott" <cantor.2 at osu.edu> wrote:

> If it isn't already possible, but I would think it is.

Which is to say, the MFA flow lets you capture and dispatch on any event signaled by the Password flow/form, and as long as that doesn't transit another view it should contain the parameters and allow your script rule to save them off in the same state map as the extended flow feature does.

There will be more general scratch space in 3.4 to save off data, but for authentication cases, the AuthenticationContext has that map for use.

-- Scott




More information about the users mailing list