<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=us-ascii">
<style type="text/css" style="display:none;"> P {margin-top:0;margin-bottom:0;} </style>
</head>
<body dir="ltr">
<div style="font-family: Calibri, Helvetica, sans-serif; font-size: 14pt; color: rgb(0, 0, 0);">
<p class="MsoNormal" style="margin:0cm 0cm 8pt;line-height:107%;font-size:11pt;font-family:Calibri, sans-serif">
<span style="font-size: 12pt; color: black; background: white; font-family: Calibri, Helvetica, sans-serif; line-height: normal;">HI, Peter and Scott, thanks very much for your valuable replies. I now have a better understanding of IDP and MFA integration. </span></p>
<p class="MsoNormal" style="margin:0cm 0cm 8pt;line-height:107%;font-size:11pt;font-family:Calibri, sans-serif">
<span style="font-size: 12pt; color: black; background: white; font-family: Calibri, Helvetica, sans-serif; line-height: normal;">I have a related query, the site, </span><a href="https://federation.nih.gov/FederationGateway"><span style="font-size: 12pt; border: 1pt none windowtext; padding: 0cm; background: white; font-family: Calibri, Helvetica, sans-serif; line-height: normal;">https://federation.nih.gov/FederationGateway</span></a><span style="font-family: Calibri, Helvetica, sans-serif; font-size: 12pt; line-height: normal;">,</span><span><span style="font-size: 12pt; color: black; background: white; font-family: Calibri, Helvetica, sans-serif; line-height: normal;"> expects
MFA authentication while logging in via the institutional login. Does it mean that our IdP should be MFA compliant and that, if it is not, there is no way to gain access to the site via the institutional login process?</span></span><o:p><span style="font-family: Calibri, Helvetica, sans-serif; font-size: 12pt; line-height: normal;"> </span></o:p></p>
<p class="MsoNormal" style="margin:0cm 0cm 8pt;line-height:107%;font-size:11pt;font-family:Calibri, sans-serif">
<o:p><span style="font-family: Calibri, Helvetica, sans-serif; font-size: 12pt; line-height: normal;"> - Francis</span></o:p></p>
</div>
<div style="font-family: Calibri, Helvetica, sans-serif; font-size: 14pt; color: rgb(0, 0, 0);">
<br>
</div>
<div style="font-family: Calibri, Helvetica, sans-serif; font-size: 14pt; color: rgb(0, 0, 0);">
<br>
</div>
<div class="_Entity _EType_OWALinkPreview _EId_OWALinkPreview _EReadonly_1"></div>
<br>
<div id="appendonsend"></div>
<hr style="display:inline-block;width:98%" tabindex="-1">
<div id="divRplyFwdMsg" dir="ltr"><font face="Calibri, sans-serif" style="font-size:11pt" color="#000000"><b>From:</b> users <users-bounces@shibboleth.net> on behalf of Cantor, Scott <cantor.2@osu.edu><br>
<b>Sent:</b> 21 February 2022 20:57<br>
<b>To:</b> Shib Users <users@shibboleth.net><br>
<b>Subject:</b> Re: Enabling MFA on Shibboleth IDP 4.01</font>
<div> </div>
</div>
<div class="BodyFragment"><font size="2"><span style="font-size:11pt;">
<div class="PlainText">External Email<br>
<br>
<br>
On 2/21/22, 9:39 AM, "users on behalf of Peter Schober" <users-bounces@shibboleth.net on behalf of peter.schober@univie.ac.at> wrote:<br>
<br>
> Might make sense to start collecting them in the wiki?<br>
<br>
That's fine, but use [1], not our plugin space. That's basically documentation for our plugins.<br>
<br>
-- Scott<br>
<br>
[1] <a href="https://shibboleth.atlassian.net/wiki/spaces/IDP4/pages/1265631834/Contributions+and+Extensions">
https://shibboleth.atlassian.net/wiki/spaces/IDP4/pages/1265631834/Contributions+and+Extensions</a><br>
<br>
--<br>
For Consortium Member technical support, see <a href="https://shibboleth.atlassian.net/wiki/x/ZYEpPw">
https://shibboleth.atlassian.net/wiki/x/ZYEpPw</a><br>
To unsubscribe from this list send an email to users-unsubscribe@shibboleth.net<br>
</div>
</span></font></div>
</body>
</html>