-
Suggestion
-
Resolution: Unresolved
-
Low
-
None
-
4.2.5
-
None
Problem Definition
If present, this element specifies a filter for possible responses. This would allow Jira to specify the authentication method it will accept from the Identity Provider. This would solve a common issue where a claims provider will offer multiple authentication options (FWB, PIV, IAL1, IAL2 etc ) at various security levels.
As an admin, I don't want the users presented with the choice to lower the authentication methods. This option would allow me to force them to use the authentication method of our choice.
Suggested Solution
Add the option to include RequestedAuthnContext in authentication queries.
[SAMLDC-99] Add the option to include RequestedAuthnContext in authentication queries
Workflow | Original: SAMLDC Workflow v2 [ 4218442 ] | New: JAC Suggestion Workflow 3 [ 4271314 ] |
Status | Original: Open [ 1 ] | New: Gathering Interest [ 11772 ] |
Description |
Original:
h3. Problem Definition
If present, this element specifies a filter for possible responses. This would allow Jira to specify the authentication method it will accept from the Identity Provider. This would solve a common issue where a claims provider will offer multiple authentication options (FWB, PIV, IAL1, IAL2 etc ) at various security levels. As an admin, I don't want the users presented with the choice to lower the authentication methods. This option would allow me to force them to use the authentication method of our choice. h3. Suggested Solution Add the option to include *RequestedAuthnContext* in authentication queries |
New:
h3. Problem Definition
If present, this element specifies a filter for possible responses. This would allow Jira to specify the authentication method it will accept from the Identity Provider. This would solve a common issue where a claims provider will offer multiple authentication options (FWB, PIV, IAL1, IAL2 etc ) at various security levels. As an admin, I don't want the users presented with the choice to lower the authentication methods. This option would allow me to force them to use the authentication method of our choice. h3. Suggested Solution Add the option to include *RequestedAuthnContext* in authentication queries. |