34
Authentication Mechanisms
•Password over protected session
–urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport
•Password over an unprotected HTTP session
–urn:oasis:names:tc:SAML:2.0:ac:classes:Password
•XML digital signature
–urn:oasis:names:tc:SAML:2.0:ac:classes:XMLDSig
•Smartcard
–urn:oasis:names:tc:SAML:2.0:ac:classes:Smartcard
•Fixed-line telephone, using a telephony protocol such as ASDL
–urn:oasis:names:tc:SAML:2.0:ac:classes:Telephony
<AuthnContextClassRef>
            Authentication Mechanism (URN)
</AuthnContextClassRef>
An Authentication Mechanism URN identifies what mechanism was used to identify the subject.  Below are some of the predefined Authentication Mechanisms.