<html><body><div style="color:#000; background-color:#fff; font-family:HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida Grande, Sans-Serif;font-size:12pt"><div><span>How can i request IdP to return LDAP common name (which is what the user enters in login page) in the Assertion upon successful authentication so that i can use the same in Logout Request.</span></div><div style="color: rgb(0, 0, 0); font-size: 16px; font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; background-color: transparent; font-style: normal;"><span>Also what should be the NameId Format for LDAP common name?</span></div><div style="color: rgb(0, 0, 0); font-size: 16px; font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; background-color: transparent; font-style: normal;"><span><br></span></div><div style="color: rgb(0, 0, 0); font-size: 16px; font-family: HelveticaNeue, 'Helvetica Neue',
 Helvetica, Arial, 'Lucida Grande', sans-serif; background-color: transparent; font-style: normal;"><span>Thanks,</span></div><div style="color: rgb(0, 0, 0); font-size: 16px; font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; background-color: transparent; font-style: normal;"><span>Vasu&nbsp;</span></div><div><br></div>  <div style="font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 12pt;"> <div style="font-family: 'times new roman', 'new york', times, serif; font-size: 12pt;"> <div dir="ltr"> <hr size="1">  <font size="2" face="Arial"> <b><span style="font-weight:bold;">From:</span></b> "Cantor, Scott" &lt;cantor.2@osu.edu&gt;<br> <b><span style="font-weight: bold;">To:</span></b> Shib Users &lt;users@shibboleth.net&gt; <br> <b><span style="font-weight: bold;">Sent:</span></b> Tuesday, 26 November 2013 10:28 PM<br> <b><span style="font-weight:
 bold;">Subject:</span></b> Re: LogoutRequest not fulfilled by IdP<br> </font> </div> <div class="y_msg_container"><br>On 11/26/13, 11:45 AM, "vyal2k" &lt;<a shape="rect" ymailto="mailto:vyal2k@yahoo.com" href="mailto:vyal2k@yahoo.com">vyal2k@yahoo.com</a>&gt; wrote:<br clear="none"><br clear="none">&gt;IdP does have the session for the user identified by NameId; when the SP<br clear="none">&gt;issues AuthnRequest immediately following the failed LogoutRequest, the<br clear="none">&gt;IdP logs says "Existing IdP session available for principal user2".<br clear="none"><br clear="none">A session based on a cookie is implicit, it's not the same as being able<br clear="none">to lookup the session by NameID. You asked what the problem was, I told<br clear="none">you. The code path there is direct, it searches for the session by NameID<br clear="none">and doesn't find one.<div class="yqt5494051239" id="yqtfd62162"><br clear="none"><br clear="none">-- Scott<br
 clear="none"><br clear="none"><br clear="none">--<br clear="none">To unsubscribe from this list send an email to <a shape="rect" ymailto="mailto:users-unsubscribe@shibboleth.net" href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br clear="none"></div><br><br></div> </div> </div>  </div></body></html>