Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Migrated to Confluence 4.0

How can an SP reset a session timer at the IDP?
The SAML specs do not specify a method for doing this, or in fact require any form of timeout at an IdP.

One proposition is to use an authnrequest message with isPassive set.

...

Product/Service

Source

isPassive() refreshes IDP timeout

Ubisecure SSO

Keith

(tick) Custom refresh URL also available

Shibboleth

Scott

No idle timeout is enforced, only an absolute lifetime on authn methods

CA Siteminder

Denny

(tick)  

Microsoft ADFS 2

  Thomas  

Yes