[security] Logout

Sylvain Gilbert SGilbert at taleo.com
Wed May 4 18:40:26 UTC 2011


Hi,

I would like to know if there is something coming in the specification about the logout/timeout. If I use an external OpenID provider for authentication in my application, how I can be sure, when the user logout (or its session timeout) of my application, its OpenID session will also be invalidated.

Regards,

Sylvain Gilbert
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-security/attachments/20110504/b8e65c30/attachment.html>


More information about the security mailing list