Genetec SingleLogoutService?

Cantor, Scott cantor.2 at osu.edu
Fri Jul 8 23:07:21 UTC 2022


I'm not sure what you're asking? Vendor's gonna vendor. You can fight them, or not, I guess, obviously there's no fundamental reason why SSO and SLO have to be intertwined. Some fights are more worth it than others.

The IdP certainly supports logout endpoints and they're enabled by default, as well as documented. No, it's certainly not trivial to really try and do logout for real, but with a vendor, "your metadata" should be confined to whatever you share with them anyway, you needn't view it as a global deployment decision.

But if you're asking "is it reasonable to require an SLO endpoint just to allow for SSO?", no, clearly not.

-- Scott




More information about the users mailing list