The purpose of this article is to walk through the configuration of Universal Logout.
- Okta Identity Engine (OIE)
- Okta Integration Network (OIN)
- Universal Logout
Universal Logout can be enabled when there is a need for users' sessions and tokens to be terminated for supported apps.
To enable Universal logout, please follow the below steps:
- Ensure the Workforce Identity SKU/License for Identity threat protection is enabled for the org.
- In the Okta Admin Console, navigate to Applications > Applications > app that supports Universal Logout.
- On the app's page, select the Authentication tab.
- In the Logout section, click Edit.
- Select Okta system or admin initiates logout.
- In the API configuration for logout section, enter the app's admin credentials. Each vendor has a different name for these fields.
- Click Connect account, and then complete the app configuration in the pop-up window that appears.
- Click Save.
Example from the Google Workspace app:
For a list of apps that support Universal Logout, please reference Universal Logout supported apps.
Related References
