Skip to main content

We've managed to set up an app service using OpenID. However, if the user is no longer allowed to access the application (trial expired), I would like to revoke its access to the OpenID client.

I expected the “Period” setting in IAM > Users should disable the login via Indicium.

Unfortunately it doesn't block the user access to the OpenID client via the Indicium login page. A simple work around is changing the users password and disable the password change, or remove the user.

Is it somehow possible to revoke access for a specific user to the OpenID client? For example when the period is over.

Hello René,

The Ends on date is currently implemented to remove all access to applications for a user, without actually blocking authentication itself. I agree that it should work as you expected it to work and that users should be unable to sign in at all once this date has passed.

We have created a ticket for you in TCP regarding this issue. The responsibility for this actually lies with IAM, so the issue will be resolved there, probably by means of a hotfix.


Hotfix has been released:

🔥 Hotfixes for week 8 | Thinkwise Community (thinkwisesoftware.com)


Reply