Forum Discussion
F5 APM SAML skip MFA for X days
Hi Niels, Thanks for your answer.
Can you elaborate a bit on why we need multi-domain SSO? We now work with SAML resources in an VPE flow. Is the multi-domain SSO really necessary as SSO is working at the moment?
You mention the IP address but that can change for the same device (e.g using mobile data / wifi). I was thinking about the username, user-agent and something device specific but don't know what to use for that as the user-agent can be the same for multiple devices using the same browser and OS.
Do you perhaps have an example somewhere on how to create the encrypted temporary cookie with a hash value in an iRule?
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com