Customizing Second Factor Configuration in mfa-authn-config.xml

Cantor, Scott cantor.2 at osu.edu
Thu Apr 22 18:08:21 UTC 2021


(Example in https://wiki.shibboleth.net/confluence/display/IDP4/SAML2SSOConfiguration, Authentication tab)

-- Scott

> -----Original Message-----
> From: Cantor, Scott
> Sent: Thursday, April 22, 2021 2:06 PM
> To: Shib Users <users at shibboleth.net>
> Subject: RE: Customizing Second Factor Configuration in mfa-authn-config.xml
> 
> > We want to enable Duo for just a few SPs. I believe this needs to be
> > configured in mfa-authn-config.xml in this bean
> 
> No. Doing that is handled by attaching supportedPrincipals to an override for
> the RP(s) or via metadata, and then using that to influence the isAcceptable()
> calls in the transition rules.
> 
> -- Scott



More information about the users mailing list