Shibboleth 3.2.1 SAML logout fails: No active session(s) found matching LogoutRequest

Cantor, Scott cantor.2 at
Tue May 24 13:31:27 EDT 2016

Just to follow this up, I did confirm from the code that it is not "smart" enough right now to default in the name qualifier attributes if they don't match exactly what the IdP issued. If you want that feature, you'll have to file a bug on it so I remember to go back in and look at it.

-- Scott

More information about the users mailing list