<div dir="ltr"><div><div><div><div>Hi,<br><br></div>Suppose we have several different groups of user that protected by one Shibboleth IdP. An SP is only allowed to work with some group.<br><br></div>During login, is there a way for SP to tell IdP which group it is working with? So IdP could do proper authentication for this group of users.<br>
<br></div>First of all does SAML have such concept? If so, does our Shibboleth IdP support this?<br><br><br><br></div>Thanks,<br clear="all"><div><div><div><div><div><div><div>Yaowen</div>
</div></div></div></div></div></div></div>