: OIDC RP Authn logout propagation to OIDC RP

Scott Cantor scott at restingparrotsoftware.com
Fri Nov 7 17:37:24 UTC 2025


If I understand your use case, the proxying support has no logout support upstream at all.

We have no firm plans for it, but if we do it, we'd have to either short-circuit the existing propagation out and *only* forward upstream, or it would be manual as a link on the final result page to do the final step. That would probably be more possible with OIDC than SAML because of the messaging involved, but "only send it upstream" has been the thought.

-- Scott



More information about the users mailing list