Enable Dynamic Authentication at the IdP-to-SP Partnership

For an IdP to respond to an authentication context request, configure dynamic authentication context processing in the IdP-to-SP partnership.
sm1252sp1
For an IdP to respond to an authentication context request, configure dynamic authentication context processing in the IdP-to-SP partnership.
Follow these steps:
  1. Navigate to the SSO and SLO step in the IdP->SP partnership wizard.
  2. Select the Dynamic for the Authentication Mode setting.
    The dynamic option indicates that the local system redirects the user to a specific authentication URL based on the requested authentication context URI.
    Conditional mapping of URIs and URLs is configured in an authentication template. If the SP does not include a URI in the request, the IdP uses the specified default URI.
  3. Select a configured template. If there is no template, click Create Template to configure one. The UI redirects you to the template configuration wizard.
    The dynamic authentication mode requires a template with dynamic authentication configured. If you disable dynamic authentication for the template, an active partnership continues to work based on the existing template settings. If you deactivate the partnership and you modify it for any reason, the existing template information is deleted. Select a new template with dynamic authentication enabled.
  4. If necessary, complete any other fields that are required for SSO configuration and any other optional features.
  5. Navigate to the Confirm page and select Finish.