<html><head><meta http-equiv="content-type" content="text/html; charset=us-ascii"></head><body style="overflow-wrap: break-word; -webkit-nbsp-mode: space; line-break: after-white-space;">Thanks Scott and Chris for the responses, I did get it working, by defining our own copy of the (NonBrowser) DuoIntegration and PreAuth beans (that the IdP has now in duo-oidc-authn-beans.xml) -- with our own Bean IDs of course -- and then referencing those beans in the map we have in mfa-auth-config.xml.  So now working again as it did in IdP 4.x.<div><br></div><div>Scott, we will be very interested in the support "OOTB" for the Admin API, that sounds like it will be very useful.<br><div><br><blockquote type="cite"><div>On May 8, 2024, at 12:11 PM, Cantor, Scott via users <users@shibboleth.net> wrote:</div><br class="Apple-interchange-newline"><div><div><blockquote type="cite">Here's the test() method from a custom IsDuoEnrolled predicate we invoke<br>from the MFA script that uses the DuoPreauthAuthenticator; is this helpful?<br></blockquote><br>FWIW, that's an example that I would suggest redoing with the Admin flow once we get this new update out the door. Much cleaner.<br><br>-- Scott<br><br><br>-- <br>For Consortium Member technical support, see https://shibboleth.atlassian.net/wiki/x/ZYEpPw<br>To unsubscribe from this list send an email to users-unsubscribe@shibboleth.net<br></div></div></blockquote></div><br><div>
<div>--<br>Michael A. Grady<br>IAM Architect, Unicon, Inc.</div><div><br></div><br class="Apple-interchange-newline">

</div>
<br></div></body></html>