-
Enhancement
-
Resolution: Done
-
Major
-
None
-
2.1 ER2, SaaS
-
None
Even though it may have a performance impact, or add complexity to the solution, in certain high security environments it is desired to support logout and token revocation for JWTs issued in OIDC flow.
Note: general best practice is to avoid revocation and instead rely on short-lived tokens and refresh tokens.