Shibboleth SAML logout redirection.

Aravindhan A apitest4 at gmail.com
Wed Oct 30 12:48:35 EDT 2013


Hi Scott,

Thanks for your reply.

It worked correctly(setting auth flag to false).(Returned to the SP URL
which is given in the return parameter).

I got another case in which the same user logged into two browsers. IDP
maintains same session for these two browsers.

When one session is logged out it works fine and return to the URL which is
given.

But when the second session trying to logout , it shows the error in SP as
follows.

opensaml::FatalProfileException

The system encountered an error at Wed Oct 30 22:03:29 2013

To report this problem, please contact the site administrator at
root at localhost.

Please include the following message in any email:

opensaml::FatalProfileException at
(http://10.0.0.231/Shibboleth.sso/SLO/Redirect)

SAML response contained an error.

Error from identity provider:

Status: urn:oasis:names:tc:SAML:2.0:status:Requester
Sub-Status: urn:oasis:names:tc:SAML:2.0:status:UnknownPrincipal

How can I rectify this error?

Is there any possible way to logout only the current session.(Not all
session from same user)?

I know that is possible using local logout, But I want to show the IDP login
page to the user(After local logout, accessing the protected resource
doesn't requires authentication).










--
View this message in context: http://shibboleth.1660669.n2.nabble.com/Shibboleth-SAML-logout-redirection-tp7590902p7590925.html
Sent from the Shibboleth - Users mailing list archive at Nabble.com.


More information about the users mailing list