When maxTimeSinceAuthn expires, is there a way to configure the SP to redirect the user to the IDP with ForceAuthn=true instead of the throwing the FatalProfileException - The gap between now and the time you logged into your identity provider exceeds the limit. -- Thanks, Dan