CAS gateway mode
ccyflai at ust.hk
Mon Jun 13 14:54:00 UTC 2022
So apparently CAS gateway mode cannot work in this kind of authentication flow configuration.
From: users <users-bounces at shibboleth.net> On Behalf Of Cantor, Scott via users
Sent: Monday, 13 June 2022 7:59 pm
To: Shib Users <users at shibboleth.net>
Cc: Cantor, Scott <cantor.2 at osu.edu>
Subject: Re: CAS gateway mode
On 6/10/22, 8:35 PM, "users on behalf of YF Lai" <users-bounces at shibboleth.net on behalf of ccyflai at ust.hk> wrote:
> Thanks. We used SAML and DuoOIDC in MFA flow. The
> passiveAuthenticationSupported flag in DuoOIDC is not enabled by default. Will try it out.
Because you can't. There's no way to control what happens on their end. You'd be violating the sematics.
For Consortium Member technical support, see https://apc01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fshibboleth.atlassian.net%2Fwiki%2Fx%2FZYEpPw&data=05%7C01%7Cccyflai%40ust.hk%7Cfbaccd05f6a442ecb5aa08da4d342ec0%7Cc917f3e2932249269bb3daca730413ca%7C1%7C0%7C637907183773922382%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=OwTd8EdNzQ%2F0OX1AWzw0PSyBdzUcyBkK2qsUIcq55jg%3D&reserved=0
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users