ADFS SingleLogoutService

Advanced Configuration

Note, this is an advanced configuration feature. Most deployments can rely on the shorthand elements.

The ADFS handler is only available if theĀ adfs.soĀ extension library is loaded by the SP.
Generally this handler need not be configured directly, because ADFS requires that it be co-located with the endpoint responsible for incoming assertions.


The ADFS handler implements the Microsoft ADFS signout protocol. The following steps are performed:

  1. Front and back-channelĀ application notificationĀ loops are executed.

  2. The active session is removed from the cache.

  3. If a "wreply" parameter is provided, the browser is redirected to it.

  4. Otherwise, theĀ globalLogoutĀ template is displayed.

The followingĀ BindingĀ values are supported:

Attributes