<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D50Z00008C3jYcSAJOkta Classic EngineSingle Sign-OnAnswered2024-09-26T09:00:10.000Z2018-01-16T17:27:24.000Z2021-07-01T11:03:39.000Z
Can Okta support SessionNotOnOrAfter for custom SAML applications?
SessionNotOnOrAfter [Optional] Specifies a time instant at which the session between the principal identified by the subject and the SAML authority issuing this statement MUST be considered ended. The time value is encoded in UTC, as described in Section 1.3.3. There is no required relationship between this attribute and a NotOnOrAfter condition attribute that may be present in the assertion.

 

Per http://docs.oasis-open.org/security/saml/v2.0/saml-core-2.0-os.pdf 

Page 27

 

This seems like something that we should be able to do for custom applications. Is this on a roadmap?

ThomasV.04723 likes this.
This question is closed.
Loading
Can Okta support SessionNotOnOrAfter for custom SAML applications?