Skip to Content.
Sympa Menu

assurance - Re: [Assurance] March Assurance Call with Harvard and GW: Recording and Slides now available

Subject: Assurance

List archive

Re: [Assurance] March Assurance Call with Harvard and GW: Recording and Slides now available


Chronological Thread 
  • From: "Cantor, Scott" <>
  • To: "" <>
  • Subject: Re: [Assurance] March Assurance Call with Harvard and GW: Recording and Slides now available
  • Date: Fri, 6 Mar 2015 18:04:36 +0000
  • Accept-language: en-US
  • Authentication-results: spf=pass (sender IP is 164.107.81.218) ; incommon.org; dkim=none (message not signed) header.d=none;

On 3/6/15, 12:51 PM, "Tom Scavo"
<>
wrote:
>
>So an IdP must pay attention to the RequestedAuthnContext in the
>AuthnRequest. Either the IdP satisfies the request or returns an
>error. A conforming IdP does not have the option to substitute an
>AuthnContext that is not requested by the SP. Perhaps this is why the
>SP fails in the scenario noted above.

The SP doesn't know what it requested (if it did so), so that wouldn't cause
an error. I don't recall the exception it reports when it gets a SAML error
back from the IdP, but it certainly might just be that, in which the IdP is
doing exactly what it should.

-- Scott




Archive powered by MHonArc 2.6.16.

Top of Page