3.1.1.5.1 Requestor IP/STS Web Browser Requestor Sessions List

The following is a potential representation for a requestor IP/STS to organize the data for tracking web browser requestor sessions to support processing of a wsignout1.0 request and a wsignoutcleanup1.0 request message. The data is organized as a list of records, each representing a particular web browser requestor session.

The following is a potential representation for organizing the data record that represents a particular web browser requestor session on the list.

Outbound Sessions List: This data element marks the beginning of the list of web browser requestor sessions.

WebBrowserRequestorSession: This record holds the list of security tokens issued for a particular web browser requestor session. The fields of this record are as follows:<44>

  • Requestor Session Identifier: This uniquely identifies a particular web browser requestor session. A WebBrowserRequestorSession record is added to the Outbound Sessions List when the first security token is issued for a particular web browser requestor session.

  • Session Entry: This identifies a relying party based on the Audience element content from a security token. A Session Entry is added to the record when a security token is issued for the web browser requestor session.