[Openid-specs-ab] Session cleanup via back-channel

John Bradley ve7jtb at ve7jtb.com
Wed Mar 12 18:58:23 UTC 2014


We have discussed creating a backchannel push method for the IdP to notify the RP.  

So far noting is written up.  I have a bad feeling that it might be me that needs to create the first draft.

John B.

On Mar 12, 2014, at 3:54 PM, Pedro Felix <pmhsfelix at gmail.com> wrote:

> Hi,
> 
> I've a scenario where a OIDC OP is acting as a bridge between upstream IdPs using non-OIDC protocols (e.g Shibboleth) and downstream RPs using OIDC.
> In this scenario I have the following requirements
>   1) The upstream IdP notifies the OP of a session termination via back-channel
>   2) The OP propagate this cleanup notification to the downstream RPs, also via back-channel (a back-channel to front-channel is not possible)
> 
> Unfortunately, the OIDC session management spec does not provide any way to perform this back-channel cleanup, however I remember reading some meeting notes about this possibility.
> 
> Is there anything that can be shared? I would like to align our solution with what is being developed by this working group.
> 
> Thanks
> Pedro
> _______________________________________________
> Openid-specs-ab mailing list
> Openid-specs-ab at lists.openid.net
> http://lists.openid.net/mailman/listinfo/openid-specs-ab

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4507 bytes
Desc: not available
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20140312/c4874af6/attachment.p7s>


More information about the Openid-specs-ab mailing list