Which of the following BEST mitigates a replay attack against a system using identity federation and
Security Assertion Markup Language (SAML) implementation?

A.
Two-factor authentication
B.
Digital certificates and hardware tokens
C.
Timed sessions and Secure Socket Layer (SSL)
D.
Passwords with alpha-numeric and special characters