From: Krzysztof B. <kb...@un...> - 2017-03-21 06:58:24
|
Shiraz, W dniu 20.03.2017 o 12:45, Shiraz Memon pisze: > Hi Krzysztof, > > In addition to Sander's concerns about release of extra (or unwanted) > attributes to the relying parties, it would also be interesting to know > whether unity allows preventing users from hiding the released (or about > to be released) attributes on the consent screen. So, here I mean, to > block the possibility for the end users to hide the "important" > attributes, which we as an authentication service are committed to > release as a proxy IdP. > > unity.saml.skipConsent=true (and similar for oauth) allows for this, however if you need to keep consent screen but only disable control of exposed information then a new feature is needed. Best, Krzysztof |