When a Service Provider generates a logout request, it verifies whether the Identity Provider belongs to an affiliation and sets an attribute in the request to the ID of the affiliation. The Identity Provider receives the request and verifies that the Service Provider belongs to the affiliation identified in the attribute.
The Identity Provider obtains the affiliation Name ID from the session store of the Session Server. When the Identity Provider issues logout request messages to all session participants, it includes the affiliation Name ID for the members of the affiliation.
| Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |