Open krymen opened 4 years ago
Hey there! I've filed b/172259671 to track this feature request internally :)
any updates on this issue? 🙇 it doesn't seem possible to force user account selection / re-consent for SAMLAuthProvider at the moment (as you can with google / oauth prompt: select_account
custom parameter)
Any update here? Would love to be able to force account selection with SAML providers.
Thanks for reporting this. Please plus one if you need this feature, which will help us prioritizing.
Hi - this is very important to us as an organization. Is there any update on this issue? How can this be prioritized? This issue is three years old by now. Very frustrated. @renkelvin
This feature is greatly desired for my organization as well - we're working with some IdP's that have long-lived security contexts and it would be essential to force reauthentication for SAML providers.
Is there any update on this issue? It is causing some significant issues for our organization and clients.
This problem is very confusing for our users.
Any news on this? The issue has been open for nearly 3.5 years now.
Any updates on this?
[REQUIRED] Describe your environment
[REQUIRED] Describe the problem
We want to be able to pass ForceAuthn as an attribute for the AuthnRequest when signing in users with SAML (https://cloud.google.com/identity-platform/docs/web/saml). The goal is to notify the IdP to not use any previous security context when authenticating the user.
As per https://wiki.shibboleth.net/confluence/display/SP3/ForceAuthn: