Skip to content

ADFSMFA as primary method. #262

Closed Answered by redhook62
PsySuck asked this question in Q&A
Discussion options

You must be logged in to vote

Hi,

You understood well...
This functionality of MS, is not clean.

  • Impossible to load an extension in primary and in secondary. 2 modules are therefore required in this case.
  • for security reasons, user registration must be disabled. therefore your users must be registered beforehand, administratively and have in their possession the appropriate TOTP key.

So, very clearly, I do not recommend that you switch to primary mode.

Be aware that next year, we plan to put primary modules online in separate extensions but based on the adfsmfa solution, in particular for authentication of devices and by client certificates.

regards

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by redhook62
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants