For an IdP, PingFederate includes a Composite Adapter, which allows an administrator to chain the selection of available adapter instances for a connection. At runtime, adapter chaining means that SSO requests are passed sequentially through each adapter instance specified until one or more authentication results are found for the user.

Adapter chaining may be used to choose an adapter instance based on the method by which a user authenticated, or to integrate an organization's multifactor authentication requirement.

Tip:

For complex authentication requirements, consider implementing one or more authentication policies on the Authentication > Policies > Policies screen.