*
wojciech...@fancyfon.com <
wojciech...@fancyfon.com> [2017-08-10 14:20]:
> Unfortunatelly our Vendor said that "They does not support Single Logout
> service"
> They only redirect logout button to specified URL.
You can't use that endpoint then.
> Can we do something to give possibility to logout user and end
> session after directly access to SingleLogoutService URL?
Not "after", but "instead": If accessing that endpoint without a SAML
logout request yields an error then configure that URL in the vendor
interface.
E.g. if SimpleSAMLphp supports an "IDP-initiated" logout endpoint (I
don't know whether it does) you could send them there instead (i.e.,
using a proprietary request instead of a standard-defined request.)
If SimpleSAMLphp does not support this I guess you're stuck with
either sending people to a website of your own explaining to the
subject what the options are. Or try not configuring that URL in the
vendor interface and see what that achieves.
-peter