Skip to Content.
Sympa Menu

mfa-interop - Re: [MFA-Interop] Software support for our MFA Interoperability authnContext value

Subject: MFA Interop Working Group

List archive

Re: [MFA-Interop] Software support for our MFA Interoperability authnContext value

Chronological Thread 
  • From: David Walker <>
  • To: <>
  • Subject: Re: [MFA-Interop] Software support for our MFA Interoperability authnContext value
  • Date: Fri, 7 Oct 2016 13:18:01 -0700
  • Authentication-results: spf=none (sender IP is ) ;
  • Ironport-phdr: 9a23:ETYHDRLXSWQpqn1RTNmcpTZWNBhigK39O0sv0rFitYgXI/3xwZ3uMQTl6Ol3ixeRBMOAtKIC1rGd6v2ocFdDyKjCmUhKSIZLWR4BhJdetC0bK+nBN3fGKuX3ZTcxBsVIWQwt1Xi6NU9IBJS2PAWK8TWf8zMIJRX+KQcwY829WsuL15z2hKiO/MiHZgtBwTu7fb5oKw2erAPascwTho0kLbw+nEjnuHxNLshf22JkbW2amxXx/I/k8IFq9yddodog8dJNS6P3Y/5+QLBFWmd1e1sp7dHm4EGQBTCE4WERByBPykJF
  • Spamdiagnosticmetadata: NSPM
  • Spamdiagnosticoutput: 1:99

I also found, so it looks like somebody is thinking about implementing the SP side.  FYI, I didn't get the sense (from what I heard secondhand) that REFEDS would delay adoption of our profile because of this.  It is, nevertheless, a good question to ask.


On 10/07/2016 01:01 PM, Nicholas Roy wrote:
A quick Google search uncovered this:

But the other authproc filter that page mentions, which should allow the SP to request an authncontextclass does not seem to exist in the docs:

Seems like this is something that SSP should support if it doesn't, and I don't think that missing it should block adoption of this profile.  The profile should drive software that doesn't support it, to support it.


On 10/7/16 1:07 PM, David Walker wrote:


The REFEDS Assurance Work Group that is reviewing our MFA interoperability profile has asked if we know what SAML implementations would support it.  I have said that Shibboleth does; do any of you know about SimpleSAMLphp or other SAML implementations (IdP or SP)?


Attachment: signature.asc
Description: OpenPGP digital signature

Archive powered by MHonArc 2.6.19.

Top of Page