Invalidate Tokens when log out from Relying Party/ OAuth Client #2464
-
Hey! Let' s say a RP got id_token and id_token from hydra. Id_token info is used in the session of the RP , so the user is kept login. |
Beta Was this translation helpful? Give feedback.
Replies: 1 comment 2 replies
-
No it is not necessary, Access tokens are not sessions!
It would be good to know, |
Beta Was this translation helpful? Give feedback.
No it is not necessary, Access tokens are not sessions!
It would be good to know,
what is your use case (what problem are you trying to solve),
why is it not working,
what are you proposing as a solution.