Merge branch 'ivir-authncontext' of https://github.com/ivir/BookStack into ivir-ivir-authncontext

This commit is contained in:
Dan Brown 2021-05-08 12:13:27 +01:00
commit b8e2d75014
2 changed files with 12 additions and 0 deletions

View File

@ -223,6 +223,12 @@ SAML2_ONELOGIN_OVERRIDES=null
SAML2_DUMP_USER_DETAILS=false
SAML2_AUTOLOAD_METADATA=false
# SAML Authentication context.
# Set to false and no AuthContext will be sent in the AuthNRequest,
# Set true and you will get an AuthContext 'exact' 'urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport'
# Set an array with the possible auth context values: array ('urn:oasis:names:tc:SAML:2.0:ac:classes:Password', 'urn:oasis:names:tc:SAML:2.0:ac:classes:X509'),
SAML2_IDP_AUTHNCONTEXT=false
# SAML group sync configuration
# Refer to https://www.bookstackapp.com/docs/admin/saml2-auth/
SAML2_USER_TO_GROUPS=false

View File

@ -139,6 +139,12 @@ return [
// )
// ),
],
'security' => [
// Specifies Authentication context
// false means that IDP choose authentication method
// null force Form based authentication or is possible set via array supported methods. See to onelogin/php-sampl/advance_settings
'requestedAuthnContext' => env('SAML2_IDP_AUTHNCONTEXT',false),
],
],
];