Multiple DuoOIDC -- Integration-Specific Principal Sets
Mark Scarbrough
scarbrom at uci.edu
Fri Oct 25 18:56:17 UTC 2024
> I'll get it added to the REFEDS article.
I was able to follow this article and get the DuoOIDC integration strategy working as expected by using multiple authentication principles and then defining the “defaultAuthenticationMethods” property in the relying party override. This is working great. Thanks very much for the helpful documentation on the reuse condition, which was the part we were specifically having issues with before.
The issue we are having now is that we would like to only enforce our special duo integration on a select group of users who are defined in our directory. If I use the defaultAuthenticationMethods for the relying party override it applies to all users for that relying party. Is there a way to conditionally set the authentication methods for a particular SP (or some other gap in my understanding)?
Thanks in advance and let me know if I can clarify anything.
-Mark
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20241025/d212005e/attachment.htm>
More information about the users
mailing list