canada-ca / canada-ca/CATS-STAE

Authentication Context with IDP Federation

Open
#3 4 comments 0 reactions 0 assignees View on GitHub
question SAML
Dominant language
Shell
Stars
16
Forks
1
PR merge metrics
No merged PRs in 30d

Description

I have a question about enabling Authentication Context for CATS 2.0 standards.

I know it is required between CP and RP in case of SP initiated federation sending AuthNContext in SAMLRequest and expecting a response in SAMLResponse.

What about the requirement in IDP initiated federation.

For example, currently CRA and ESDC use identity federation (IDP initiated) without the use of SAML Request. I was wondering if LOA2 Authentication Context is required in this scenario.

Thanks,
Ram

Contributor guide

Open the contributing guide

Research direction

Start by reviewing the CATS 2.0 Authentication Context requirements for IDP-initiated federation and comparing them with the CRA and ESDC flows described. Done means the issue records a clear, standards-backed answer about whether LOA2 is required without a SAMLRequest.

Written by the indexing model from the issue text.

Assessment

Domain
authentication, security
Issue type
Documentation
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
20/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.