Comment 5 for bug 1291157

Revision history for this message
David Chadwick (d-w-chadwick) wrote :

I fully understand why IDP deletion should delete/revoke tokens, but why should an update to the IDP trigger the same thing? E.g. suppose the SAML meta data for an IDP is updated. This should not mean that users tokens are invalidated. e.g. key update is a perfectly normal event as keys have a natural life span