diff --git a/lib/SimpleSAML/IdP.php b/lib/SimpleSAML/IdP.php index a2bcbf1b60f02e1a9dfceec83802b21f6c78277d..e5566b832dfc33b99487d2c79bd3587dd08d572f 100644 --- a/lib/SimpleSAML/IdP.php +++ b/lib/SimpleSAML/IdP.php @@ -261,7 +261,7 @@ class SimpleSAML_IdP { if (isset($state['core:SP'])) { $session = SimpleSAML_Session::getSessionFromRequest(); $session->setData('core:idp-ssotime', $state['core:IdP'] . ';' . $state['core:SP'], - time(), SimpleSAML_Session::DATA_TIMEOUT_LOGOUT); + time(), SimpleSAML_Session::DATA_TIMEOUT_SESSION_END); } call_user_func($state['Responder'], $state); @@ -460,6 +460,8 @@ class SimpleSAML_IdP { if ($assocId !== NULL) { $this->terminateAssociation($assocId); + $session = SimpleSAML_Session::getSessionFromRequest(); + $session->deleteData('core:idp-ssotime', $this->id . ':' . $state['saml:SPEntityId']); } /* Terminate the local session. */ @@ -489,6 +491,9 @@ class SimpleSAML_IdP { assert('is_string($assocId)'); assert('is_string($relayState) || is_null($relayState)'); + $session = SimpleSAML_Session::getSessionFromRequest(); + $session->deleteData('core:idp-ssotime', $this->id . ';' . substr($assocId, strpos($assocId, ':') +1)); + $handler = $this->getLogoutHandler(); $handler->onResponse($assocId, $relayState, $error);