<div dir="ltr"><div dir="ltr">On Mon, Nov 16, 2020 at 8:12 AM Cantor, Scott <<a href="mailto:cantor.2@osu.edu">cantor.2@osu.edu</a>> wrote:<br></div><div class="gmail_quote"><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">SAML proxying is already supported natively.<br></blockquote><div><br></div><div>This is where my hope lies. We already have password hash sync to AAD, so no need to integrate Azure MFA with Shibboleth directly if IdPV4 can proxy the SAML request to AAD (where it along with MFA gets processed natively and result returned to the shibb IdP). That then enables us to reconsider our future with Duo as MFA provider while still keeping our shibb integrated SPs intact. </div><div><br></div><div>-Rob<br></div><div><br></div><div> </div></div>-- <br><div dir="ltr" class="gmail_signature"><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div>Robert W. Gorrell<br>IT Manager, Identity and Access Management <br></div>
<div>University of NC at Greensboro<br><span style="white-space:nowrap">336-334-5954</span><br>PGP Key ID B36DB0CA<br></div><div><a href="https://orcid.org/0000-0003-0158-8187" target="_blank">https://orcid.org/0000-0003-0158-8187</a><br></div></div></div></div></div></div></div></div>