Single logout problem

Sharmistha sharmistha.0688 at gmail.com
Fri Mar 22 10:20:25 EDT 2019


I have configured two SPs. I have logged in both the SPs i.e SP1 and SP2.
Then I have initiated logout from SP1 then I see propagation page
"Attempting to log out of the following services" with my second SP name and
a red cross.

I don't see any errors in log. I can see in SAML-tracer that  the logout
response came successfully from the second SP.
<saml2p:LogoutResponse xmlns:saml2p="urn:oasis:names:tc:SAML:2.0:protocol"
                      
Destination="https://idp.betterknow.com/idp/profile/SAML2/Redirect/SLO"
                       ID="ae7b4324h7732a037d6f7941ihbidh"
                       InResponseTo="_0c3557d63380a5349a3011d77f6af2ef"
                       IssueInstant="2019-03-22T14:07:36.512Z"
                       Version="2.0"
                       >
    <saml2:Issuer
xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion">https://shibboleth-dsp-dev.betterknow.com/shibboleth-sp</saml2:Issuer>
    <saml2p:Status>
        <saml2p:StatusCode
Value="urn:oasis:names:tc:SAML:2.0:status:Success" />
    </saml2p:Status>
</saml2p:LogoutResponse>

But, the session is not getting cleared from the 2nd SP and so, I can easily
access the application opened from 2nd SP.


I have attached the idp.properties file, relying-party.xml,
metadata-providers.xml.
Am I missing any configurations so the single logout is not haapening
successfully.
Please help me. 
relying-party.xml
<http://shibboleth.1660669.n2.nabble.com/file/t398923/relying-party.xml>  
metadata-providers.xml
<http://shibboleth.1660669.n2.nabble.com/file/t398923/metadata-providers.xml>  
idp.properties
<http://shibboleth.1660669.n2.nabble.com/file/t398923/idp.properties>  








--
Sent from: http://shibboleth.1660669.n2.nabble.com/Shibboleth-Users-f1660767.html


More information about the users mailing list