authentication - Thinktecture IdentityServer3 - Single sign out for distributed system -


i'm building distributed system multiple clients use single identity server authentication. provides single sign on between these clients.

when user signs out 1 of clients, , signs out identity server, can identity server sign user out other clients ?

i've seen asked here : thinktecture identity server 3 single sign out

if answer no, identity provider have redirect user sign out urls of each client federates it? or identity server know clients user had authenticated , selective in redirects?

edit:

or can identity provider explicitly call service on each client expire users' session?

to implement single sign out have page on sts img tags each rp :

<div>     <img src="http://rp1.com?wa=wsignoutcleanup1.0" />     <img src="http://rp2.com?wa=wsignoutcleanup1.0" /> </div> 

and timer or piece of js redirect when images lodaded. sts may or may not remember on rp user logged. asking wsingoutcleanup when haven't signed in no big deal.

more information available here :

that being said, don't know how handled in identityserver.


Comments

Popular posts from this blog

Magento/PHP - Get phones on all members in a customer group -

php - Bypass Geo Redirect for specific directories -

php - .htaccess mod_rewrite for dynamic url which has domain names -