This issue has been created
 
 
OpenId Connect / cid:jira-generated-image-avatar-abfe258f-3161-4a95-b7a8-fad972ec64c8 OIDC-239 Open

Allow forcing the logout of the user on the provider when it's not allowed on XWiki

 
View issue   ยท   Add comment
 

Issue created

 
cid:jira-generated-image-avatar-799dba22-9687-4620-816f-fd76e48cc41f Thomas Mortagne created this issue on 06/Jun/25 12:19
 
Summary: Allow forcing the logout of the user on the provider when it's not allowed on XWiki
Issue Type: cid:jira-generated-image-avatar-abfe258f-3161-4a95-b7a8-fad972ec64c8 Improvement
Affects Versions: 2.18.1
Assignee: Unassigned
Components: Authenticator
Created: 06/Jun/25 12:19
Priority: cid:jira-generated-image-static-major-2ca736a3-c42a-4494-8229-208a9990e5cf Major
Reporter: Thomas Mortagne
Description:

When the user is filtered out by oidc.groups.allowed and is not allowed to access XWiki it will still be logged in on the provider. It would be interesting to introduce an option to force login out of the provider in such a case.