QuestionAugust 1, 2025

Which of the following statements about SAML is false? a. An SP does not need to store user passwords. b. An SP can require users to rotate their passwords on a certain schedule. C. An IdP can enforce MFA. d. An IdP sends an authentication token to the SP.

Which of the following statements about SAML is false? a. An SP does not need to store user passwords. b. An SP can require users to rotate their passwords on a certain schedule. C. An IdP can enforce MFA. d. An IdP sends an authentication token to the SP.
Which of the following statements about SAML is false?
a. An SP does not need to store user passwords.
b. An SP can require users to rotate their passwords on a certain schedule.
C. An IdP can enforce MFA.
d. An IdP sends an authentication token to the SP.

Solution
4.5(308 votes)

Answer

b. An SP can require users to rotate their passwords on a certain schedule. Explanation 1. Identify the role of SP and IdP An SP (Service Provider) relies on an IdP (Identity Provider) for authentication, so it does not store user passwords. 2. Analyze password management Since SPs do not manage passwords, they cannot enforce password rotation schedules. 3. Evaluate MFA enforcement An IdP can enforce Multi-Factor Authentication (MFA) as part of its authentication process. 4. Understand token transmission An IdP sends an authentication token to the SP after successful authentication.

Explanation

1. Identify the role of SP and IdP<br /> An SP (Service Provider) relies on an IdP (Identity Provider) for authentication, so it does not store user passwords.<br />2. Analyze password management<br /> Since SPs do not manage passwords, they cannot enforce password rotation schedules.<br />3. Evaluate MFA enforcement<br /> An IdP can enforce Multi-Factor Authentication (MFA) as part of its authentication process.<br />4. Understand token transmission<br /> An IdP sends an authentication token to the SP after successful authentication.
Click to rate:

Similar Questions