I have tried to supersede the login with a new login, passing in a new user trustServiceToken via OIT and also tried with the Basic Base64 encoded user/pass with no success the initial logged in session remains active. Currently using AJAX calls with the REST API.
Was hoping it would be something as simple as using a "CRUD" DELETE call on root /rest/api/resourceIndex
Can anyone point me in the right direction; as I can't see this documented on Oracle Docs.