diff --git a/.env b/.env index 3c9007f..95a1215 100644 --- a/.env +++ b/.env @@ -12,3 +12,4 @@ MCP_ID_TOKEN_SIGNED_RESPONSE_ALG: RS256 MCP_USERINFO_SIGNED_RESPONSE_ALG: "" ACR_VALUES: "" SESSION_SECRET: CeciEstUnFauxSecret +ACR_VALUE_FOR_2FA: "https://refeds.org/profile/mfa" diff --git a/index.js b/index.js index f0bec1f..f5d9b5f 100644 --- a/index.js +++ b/index.js @@ -125,7 +125,7 @@ app.post( claims: { id_token: { amr: { essential: true }, - acr: { essential: true, value: "https://refeds.org/profile/mfa" }, + acr: { essential: true, value: process.env.ACR_VALUE_FOR_2FA }, }, }, }),