I have an IDP proxy structure like:
SP -> Proxy Layer -> IDP Layer -> A third Party IDP.
For some reason, in the proxy layer, I have to use a SAML authentication module to do SAML SSO with a third party IDP.
For now, the SSO part is completed. However, when I was deploying Single Log Out part I met issues. I want to log out of the OpenAM session and the third party IDP at the same time when I use IDP initialed SLO at the Proxy Layer. I wonder to know how to send a SAML logout request from the IDP layer or from the SAML authentication module to the third party IDP to log it our during the IDP initiated SSO begin with Proxy Layer.