Limiting ID file downloads from the ID vault is disabled for SAML federated login
When SAML Notes® federated login or SAML Web federated login is the authentication method used to extract HCL Notes® ID files from the ID vault, the value for the ID Vault policy setting Allow automatic ID downloads is now ignored. (This setting is in the ID vault tab of a Security Settings policy document).
The setting is ignored because SAML authentication requires unrestricted download access to ID files from the vault.
Note: If the Allow password authentication with the ID vault setting is
enabled for federated login, Allow automatic ID downloads setting is still
used for the password authentication. Allow password authentication with the ID
vault setting is found in the section of the Security Settings policy document.