<div dir="ltr"><div dir="ltr">Thanks for all your advice, Scott. That makes it much clearer.<div><br></div><div>Cheers,</div><div><br></div><div>Max</div></div><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">On Wed, 27 Sept 2023 at 13:24, Cantor, Scott <<a href="mailto:cantor.2@osu.edu">cantor.2@osu.edu</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">> With all these changes in place, do I need to do anything else to<br>
> disable/prevent use of the Artifact profile with Browser SSO?<br>
<br>
No. Setting the property to false informs the IdP that requests for the artifact binding in an AuthnRequest can't be honored and eliminates the binding from the "outbound binding" collection that it iterates over when picking something to use.<br>
<br>
-- Scott<br>
<br>
<br>
<br>
<br>
<br>
<br>
</blockquote></div><div dir="ltr" class="gmail_signature"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div style="font-size:small"><br></div></div></div></div></div></div></div>