SAML MFA claims for HR2day (Salesforce) SSO
H
Helpdesk
Salesforce (HR2day) has introduced new security requirements for SSO connections, as detailed in this article: https://help.salesforce.com/s/articleView?id=005237070&type=1&utm_source=techcomms&utm_medium=email&utm_campaign=FY27_Core_4097908
To maintain a seamless login experience and meet these requirements, we would like to see functionality added to HelloID that allows us to configure and send specific SAML MFA claims.
Specifically, this involves the following two additions:
- Sending a standard MFA claim (to prevent redundant 'Device Activation' prompts for regular users).
- Sending a conditional 'phishing-resistant' MFA claim, specifically for the system administrators group.