0
  1. When an ISVA is used as an IDP - https://www.ibm.com/docs/en/sva/10.0.5?topic=information-saml-20-identity-provider-worksheet (Check Single logout settings) It says that - ISVA as an IDP has a provision to exclude Session Index.

  2. When ISVA is used as an SP – https://www.ibm.com/docs/en/sva/10.0.5?topic=information-saml-20-service-provider-worksheet (Check Single logout settings) It says - ISVA as an SP has no provision to exclude Session Index. And I believe there must be some reason why this is not provided.

I would like to understand - Why ISVA as an SP doesn’t have the option to exclude the session index?

I have a use case where a different IDP uses NameID instead of Session Index to terminate the session. And as a result, ISVA which is an SP throws an error as it expects SessionIndex.

umesh torawane
  • 431
  • 4
  • 4

0 Answers0