A Provider passes this test if the value supplied for max_auth_age is larger than the actual authentication age, and the Provider forces you to log in again and reports this to the RP.