OIDC Flow Condition To ACR Value Mapping
Description
Configures a mapping of a flow condition to an ACR value. The ID token may get the configured ACR value, if the flow condition is fulfilled.
May be used by
Properties
Flow Condition (
flowCondition) Description
If this condition is fulfilled, the below ACR value may be in the ID token.
Attributes
Plugin-Link
Mandatory
Assignable plugins
Account Linking Required Red Flag Condition Active Authentication Method Airlock 2FA Device Deletion Possible Airlock 2FA was used for login (Transaction Approval only) Always False Always True Boolean Condition Cronto Activation Possible Cronto Activation Required Cronto Device Removal Possible Cronto Letter Order Condition Cronto was used for login (Transaction Approval only) CrontoSign Swiss Push Activation Possible Email OTP was used for login (Transaction Approval only) FIDO Credential Removal Possible FIDO was used for login (Transaction Approval only) First Usage of Device Has Cronto Account Has Cronto Device Has Device Token Has Email Address Has FIDO Credential Has Matching Role Has Matrix Card Has OATH OTP Token Has Password Has Suitable Airlock 2FA Device Has Tag Has Vasco OTP Token Has mTAN Activation Letter Has mTAN Token IdP-Initiated SSO Flow On SP Logical AND Logical NOT Logical OR Matching Username Never Migrate Possible New Device Condition Next Authentication Method-based Migration Condition OAuth 2.0 Authorization Code Grant In Progress OIDC prompt=none Condition Password Letter Order Interval Condition Public Self-Service Allowed Condition Red Flag Raised Request Has SSO Ticket Step Activated String Regex Condition User Attribute Is Unique User Identified User Represented Condition Vasco Activation Possible mTAN Number Changed mTAN Number Deletion Possible mTAN Number Registration Possible mTAN was used for login (Transaction Approval only)
ACR Value (
acrValue) Description
ACR value to write into the ID token. Note: The ACR value is case sensitive.
Attributes
String
Mandatory
YAML Template (with default values)
type: OpenIdConnectFlowConditionToAcrMapping
id: OpenIdConnectFlowConditionToAcrMapping-xxxxxx
displayName:
comment:
properties:
acrValue:
flowCondition: