Configuring return URL on Logout

Peter Gillard-Moss pgillard at thoughtworks.com
Wed Jun 18 04:56:20 EDT 2014


Hello,

tl;dr How would one configure the return url when using local logout within
Shibboleth (within shibboleth2.xml)?

We are using Apache with mod_shib and mod_proxy in front of our app to
handle authentication.

We need to provide local logout and we are using the URL /Logout
successfully.  However we wish to redirect to the IdP which displays a
status page of your SSO status and the status of applications logged into.
 It also gives a clear logout button.

>From the documentation we can't decipher how to configure shibboleth to
redirect to our URL.  The only thing we've found is to put the URL as a
value to the return query string parameter.  We would far prefer to
configure this within Shibboleth thus allowing applications to be
completely ignorant (and avoid people getting it wrong, allowing it to
change etc.).

So, to repeat: how would one configure the return url when using local
logout (/Logout) within Shibboleth (within shibboleth2.xml) and avoid using
/Logout?return=$url?

Thanks
Peter

P.S. We have read, and digested
https://wiki.shibboleth.net/confluence/display/SHIB2/SLOIssues

-- 
Peter Gillard-Moss
Developer | ThoughtWorks | TechOps
http://www.thoughtworks.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20140618/bff918a5/attachment.html 


More information about the users mailing list