There isn't currently a supported way to change the SAML assertion presented by our gateway.
However, similar to those who insist on adding forceAuthn=true to the SAML assertion versus fixing their IdP configuration, you may be able to figure out how to do it by hacking around with files in /opt/CPSamlPortal/phpincs/simplesamlphp.
However, any changes to any files in this directory would:
- Be completely unsupported and possibly break on upgrade or JHF installation
- Have to be applied on each gateway manually
Formal support for RSA's SAML IdP would have to be treated as an RFE through your local Check Point office.