<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
Configuring Universal Logout
Single Sign-On
Okta Identity Engine
Overview

The purpose of this article is to walk through the configuration of Universal Logout.

Applies To
  • Okta Identity Engine (OIE)
  • Okta Integration Network (OIN)
  • Universal Logout
Cause

Universal Logout can be enabled when there is a need for users' sessions and tokens to be terminated for supported apps.

Solution

To enable Universal logout, please follow the below steps: 

  1. Ensure the Workforce Identity SKU/License for Identity threat protection is enabled for the org.
  2. In the Okta Admin Console, navigate to Applications > Applications > app that supports Universal Logout.
  3. On the app's page, select the Authentication tab.
  4. In the Logout section, click Edit.
  5. Select Okta system or admin initiates logout.
  6. In the API configuration for logout section, enter the app's admin credentials. Each vendor has a different name for these fields.
  7. Click Connect account, and then complete the app configuration in the pop-up window that appears.
  8. Click Save.

 

Example from the Google Workspace app:

Logout 

 

For a list of apps that support Universal Logout, please reference Universal Logout supported apps.

 

Related References

 

 

Loading
Configuring Universal Logout