Send an attribute based on event in the MFA flow
Chris Groves
GrovesCD at cardiff.ac.uk
Fri May 15 14:26:50 UTC 2026
Hi,
We used the MFA flow a few years back to give users 3 choices via a custom view when logging in to some SPs. Whilst there were 3 choices, this led to the IDP using one of only 2 login methods, for reasons.
One of those SPs is now asking for the option selected by the user to be sent in a SAML attribute.
Can someone help in suggesting how to achieve this please?
Because two of the options use the same authentication method I can't use that to translate into something the SP can use. Likely I need to do something via a script within mfa-authn-config.xml, but can't work out what.
Currently on v5.1.1, about to go to 5.2.2.
Many thanks
Chris
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20260515/452cf133/attachment.htm>
More information about the users
mailing list