The Shibboleth V2 IdP and SP software have reached End of Life and are no longer supported. This documentation is available for historical purposes only. See the IDP v4 and SP v3 wiki spaces for current documentation on the supported versions.

IdPFilterRequirementAuthenticationMethodString

Authentication Method Attribute Filter Matching Rule

This matching rules evaluates to true if the method used to authenticate the user matches a given string.

Define the Rule

This rule is defined by the element <PolicyRequirementRule xsi:type="basic:AuthenticationMethodString">, for policy requirements rules, and <PermitValueRule xsi:type="basic:AuthenticationMethodString">, for permit value rules, with the follow attributes:

  • value - the string value to match
  • ignoreCase - a boolean flag indicating whether the match is not case-sensitive
Example Policy Requirement Rule using the AuthenticationMethodString Match Function
<PolicyRequirementRule xsi:type="basic:AuthenticationMethodString" value="urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport" />