We would like to allow users in a specific ldap group the ability to
optionally bypass Duo via a 'Skip' button below the 2fa prompt in CAS if
the user is not signed up for a 2fa account. Essentially there would be
three options for a service:

- 2fa not required
- 2fa always required
- 2fa optionally required (but always required if the user has a Duo
account)

Is there a way to configure CAS 5.0.x that would allow a user to bypass Duo
in this manner?

If it's not built in, could someone point me to some example code that
would allow me to implement this behavior?

Thanks,
Adam

-- 
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
--- 
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/a/apereo.org/d/msgid/cas-user/CAN6MV5Pk_yL6pZpUFv2RF6V1%3DP-ug0kr_pXa_r2C%2BCQM_-VUnA%40mail.gmail.com.

Reply via email to