I am trying to figure out a way to configure the IVE to sign a user out of their Juniper session when they log out of the internal web app, similar to KB19464. The only difference from the KB is that the user is currently using SAM to tunnel traffic, so the rewriting engine is not involved.
My initial thoughts were towards selective rewriting policies for the web apps' logout URLs, set to rewrite (auto-detect), combined with Detailed Rules for SAM ACLs that deny socket access to that specific URL, but I can't seem to find a way to stop the traffic from being tunneled.
Any assistance would be greatly appreciated.
Thanks!
Hi,
You can only do this through rewriting I believe, so you would need the web app to not go through SAM. Without knowledge of your application I don't know if this is possible...
Sam.