Incorrect (stale) user data in SAML2 assertion
Matthew Slowe
m.slowe at kent.ac.uk
Thu Mar 12 07:59:59 EDT 2015
On Thu, Mar 12, 2015 at 12:10:07PM +0100, Peter Schober wrote:
> * Matthew Slowe <M.Slowe at kent.ac.uk> [2015-03-12 11:58]:
> > User B then starts the whole process again within the same
> > browser...
>
> You can't switch users in the same browser, not until all cookies for
> the IDP are nuked, too, IIRC.
Meh, is there a way to provoke that? Some URL I can hit within the IDP
which will destroy cookies? Preferably with a "and next go to $URL"
parameter :)
--
Matthew Slowe | Server Infrastructure Officer
IT Infrastructure, Information Services, University of Kent
Room S21, Cornwallis South
Canterbury, Kent, CT2 7NZ, UK
Tel: +44 (0)1227 824265
www.kent.ac.uk/is | @UnikentUnseenIT | @UKCLibraryIt
More information about the users
mailing list