cxf-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "gonzalad (JIRA)" <j...@apache.org>
Subject [jira] [Created] (FEDIZ-212) Multiple OIDC logout return to login page
Date Mon, 09 Oct 2017 19:37:00 GMT
gonzalad created FEDIZ-212:
------------------------------

             Summary: Multiple OIDC logout return to login page
                 Key: FEDIZ-212
                 URL: https://issues.apache.org/jira/browse/FEDIZ-212
             Project: CXF-Fediz
          Issue Type: Bug
    Affects Versions: 1.4.2
            Reporter: gonzalad


I'm using Fediz SSO global logout.

Scenario :
 * start a clean incognito session
 * user logs to OIDC Client 1
 * user logs to OIDC Client 2 (in another tab, same browser window)
 * user logs out OIDC Client 1
 * now user switched tab to OIDC Client 2
 * user logs out from OIDC Client 2

On the last logout, the user is automatically rerouted to IDP login UI.

Looking at network view of Chrome dev toolbar, we see when the user is redirected back from
IDP to OIDC (/oidc/login), that the OIDC redirects back to logout : /oidc/idp/logout.




--
This message was sent by Atlassian JIRA
(v6.4.14#64029)

Mime
View raw message