Fun with proxying to AzureAD

mat houser mhouser at
Fri Jun 4 19:45:02 UTC 2021

Hello all,

We're working on proxying our Shib IdP to Azure mostly to get our
student population enrolled in an MFA solution. Everything appears to be
working properly except for the business
breaking things when the user hits the Azure login page.

I saw that there was a thread around January on this topic, but is there
any documentation around on what we would need to do to proxy requests
from SPs that are requiring the MFA context, or does anybody have any
examples of how other institutions have addressed this issue?

Thanks in advance,


mhouser at

More information about the users mailing list