Skip to main content

AST Login

AST Login

The main task of this execution is to perform Actions configuration on AST services.

Type

ProtocolOpenID Connect 1.0
HTTP methodGET
TypeBrowser Flow
EndpointAuthorization Endpoint
Flow SupportedAuthorization code flow
Implicit flow
Hybrid flow
ResponseID Token, Access Token, Refresh Token
Response Modequery, form_post, fragment

How to configure

To access the config of the execution press the Actions button and select Config. The authenticator configuration screen will appear. Then enter your config data.

AST Login

Configuration

Parameters involved in AST Login execution
ParameterDescription
AliasDisplay name of configuration, which occurs in authentication flow. (Example: AST Login)
ActionSelect the action which the authenticator should perform.
MLoASelect MLoA value for the user.
AST Client ID OptionalEnable to make AST Client ID optional for AST activation.
Set hidden first factorsEnable to set user attribute hidden_first_factor_{astClientId} as password after activation.
Read AST Client ID and Client Data from sessionEnable to always read AST Client ID and Client Data from session.
Prompt user before unbind allIf enabled it will request for confirmation before unlinking the device(s) in Confirmation screen. If disabled it will unlink without Confirmation screen.
JSON Script To display the prompt information in JSON Headless V2 theme, when Prompt user before unbind all is enabled.

AST Login

User Flow

Execution Flow

This execution contains the following main steps:

  1. AST Login must be preceded by 1FA since it procures a user's identity validation from this precedent Authenticator. For instance: KOBIL Username Password Form.
  2. The AST Login authenticator will perform actions (login, activate, etc) based on the configs, it provides support for the AST service.
AST Login