Scripted AuthnContextClass/AuthenticationPrincipalWeightMap
Ritterhoff, Florian
florian.ritterhoff at hm.edu
Fri Apr 19 14:56:10 UTC 2024
Yep. That was the right hint! Thanks for the quick support!
--
Florian Ritterhoff - Zentrale IT
Hochschule München University of Applied Sciences
Lothstraße 34, 80335 München, G2.21a
T +49 89 1265-1745
> On 19. Apr 2024, at 16:24, Cantor, Scott via users <users at shibboleth.net> wrote:
>
> I guess if your actual goal here is "don't require MFA but pick a different context for it if it's used", then that would be addressed by setting defaultAuthenticationMethods to both the "special" value and something else like Password or PPT, and that can allow the IdP to bypass MFA if it's not required.
>
> A lot of this is very site-specific in terms of how MFA is being applied and when, but suffice to say the weight map is not your answer here.
>
> -- Scott
>
>
> --
> For Consortium Member technical support, see https://shibboleth.atlassian.net/wiki/x/ZYEpPw
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20240419/f3c9aede/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4670 bytes
Desc: not available
URL: <http://shibboleth.net/pipermail/users/attachments/20240419/f3c9aede/attachment.p7s>
More information about the users
mailing list