Skip to content

action: Revoke Identity Session (Azure AD / Okta) #6

@keirsalterego

Description

@keirsalterego

Goal

Expand containment beyond the host to the identity layer.

Scope

  • Implement signed requests to revoke OIDC tokens and force password resets.
  • Add audit entries specifically for Identity-layer actions.

OpSec Mandate

Never store identity provider client secrets in the proxy. Use OIDC-based short-lived tokens or AWS Secrets Manager.

Metadata

Metadata

Assignees

No one assigned

    Labels

    stage:growthStage 2: Customer Conversion (RELEASE)

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions