Uploaded image for project: 'OpenAM'
  1. OpenAM
  2. OPENAM-1703

SP Single Logout Init returns HTTP 400 when no local session exists

    XMLWordPrintable

    Details

    • Rank:
      1|hzni2f:
    • Sprint 3

      Description

      Run OpenAM as hosted SP, then:
      1) Authenticate via Federation
      2) Log out of SP only.
      3) Initiate SP init logout request

      At this stage you should see a HTTP 400 error. In this case at least the RelayState/goto parameter should be honored (the session at the IdP can't be invalidated at that point due to the invalid/missing local session).

        Attachments

          Activity

            People

            peter.major Peter Major [X] (Inactive)
            peter.major Peter Major [X] (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Dates

              Created:
              Updated:
              Resolved: