Unicon / cas-mfa

CAS server overlay with support for multifactor authentication.
Apache License 2.0
24 stars 19 forks source link

Support multiple simultanous authenticationMethods #108

Closed mmoayyed closed 8 years ago

mmoayyed commented 9 years ago

Presently, authentication methods are defined statically in the MFA configuration per RP, request or per user attribute. A single authentication method is always resolved. However, it may be desirable to allow more than authentication method for a given request. Consider a sample scenario where CAS is configured with DUO, but the user has no access to their mobile device and has no security codes available, but they have their Yubikey hardware token with them. Supporting both flows at the same time will allow the user to go thru authn.