[prev in list] [next in list] [prev in thread] [next in thread]
List: forgerock-openam
Subject: [OpenAM] End Session not working
From: Maximiliano Yacobucci <myacobucci () identicum ! com>
Date: 2016-08-23 14:46:59
Message-ID: CAOSReVxttYxbsukvEeiM-1kqHdrqg07yXddmGHg43wdAwy5cdw () mail ! gmail ! com
[Download RAW message or body]
[Attachment #2 (multipart/alternative)]
Hi,
I am using OpenAm 13 and I want to revocate an id token. The problem that I
am having is that when I use "/oauth2/connect/endSession" endpoint with
id_token_hint as parameter and "Authorization: Bearer ..." as header, the
response is 204 No Content.
Then, when I call "/oauth2/userinfo" endpoint with the token, it still
keeps sending information of the user.
I think that I should not be able to get info after calling the endSession
end point.
Thanks!
--
Maximiliano
[Attachment #5 (text/html)]
<div dir="ltr">Hi,<div><br></div><div>I am using OpenAm 13 and I want to revocate an \
id token. The problem that I am having is that when I use \
"/oauth2/connect/endSession" endpoint with id_token_hint as parameter and \
"Authorization: Bearer ..." as header, the response is 204 No \
Content.</div><div><br></div><div>Then, when I call "/oauth2/userinfo" \
endpoint with the token, it still keeps sending information of the user.<br \
clear="all"><div>I think that I should not be able to get info after calling the \
endSession end point. </div><div><br></div><div>Thanks!</div><div><br></div>-- \
<br><div class="gmail_signature" data-smartmail="gmail_signature"><div \
dir="ltr"><div><div dir="ltr"><div><div \
dir="ltr">Maximiliano</div></div></div></div></div></div> </div></div>
_______________________________________________
Visit the OpenAM forum at https://forgerock.org/forum/fr-projects/openam/
OpenAM mailing list
OpenAM@forgerock.org
https://lists.forgerock.org/mailman/listinfo/openam
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic