cancel
Showing results for 
Search instead for 
Did you mean: 

IAS stopped sending correct AuthnContext

matteoprinetti
Participant
0 Kudos

Hi all,

since today our IAS (hosted on eu2) stopped sending the PasswordProtected authcontext as configured. We keep receiving

<AuthnContextClassRef>urn:federation:authentication:windows</AuthnContextClassRef>

instead of

<AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport</AuthnContextClassRef>

Has there been a Server-side change ? Because now or production users are gettin relogged again without asking for password.

Accepted Solutions (0)

Answers (2)

Answers (2)

yogananda
Product and Topic Expert
Product and Topic Expert
0 Kudos

matteoprinetti

Kindly check your SAML Setup once more if its selected Service Provider Authentication Context, if yes - Kindly select the last row radio button for users to work.

marko.sommer

MSo
Product and Topic Expert
Product and Topic Expert
0 Kudos

Though it's likely a bit late for a reply I can state that there was no push-to-prod for IAS on that very day.
You may find out server side changes (IAS release update) in the What's New section of the application docu:
https://help.sap.com/docs/IDENTITY_AUTHENTICATION/6d6d63354d1242d185ab4830fc04feb1/de21efe39e1442618...

But such a change might also be triggered from the application side, if the Authentication Context is configured to be SP provided.