<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN">
<html><body>
Goog morning, <br /><br />we are migrating from idp2 to idp4. With idp2 all works fine, with idp4 we are found some problems.<br />In particular, we would like to ask for support on this issue: the values in AuthnContextClassRef sent in the authentication request from the Sps seem to be ignored.<br />The sso doesn't seem to take this into account, just an example what I mean:<br /><br />1) I login with an sp that sends in the saml request "samlp:RequestedAuthnContext Comparison="exact" and<br /> "urn:federation:ac:classes:PasswordProtectedTransport" in AuthnContextClassRef . <br />2) I try to access to another SP configured to send "samlp:RequestedAuthnContext Comparison="exact" and<br /> "urn:federation:ac:classes:X509Q" in AuthnContextClassRef . I would expect to see the login screen again, but the idp responds immediately with a successful authentication response.<br /><br />I use flow External Authentication.<br />In the old idp2, we don't have this behavior, are we missing something that needs to be configured?<br /><br /><br />Thanks
</body></html>
<br><br/><br/>VOUCHER CONNETTIVITÀ per P.IVA e PMI: internet a canone 0 per 48 mesi. ATTIVA ORA<br />
<a href='https://casa.tiscali.it/promo/?u=https://promozioni.tiscali.it/voucher_business/?r=TS00000A00025&dm=link&p=tiscali&utm_source=tiscali&utm_medium=link&utm_campaign=voucherbusiness&wt_np=tiscali.link.footermail.voucherbusiness.btb..' target='_blank'>https://casa.tiscali.it/promo/?u=https://promozioni.tiscali.it/voucher_business/</a><br/><br/>