Authentication not enforced and logout failing

I am trying to test an okta hosted solution using the following Okta repo:

The home page loads, but I am able to browse all pages without logging in (home, about contact). Log in seems to work fine and I am able to view the full user profile.

When I go to log out, I get the error below.

I have included images of my application settings below the log out error.


Server Error in ‘/’ Application.

The resource cannot be found.

Description: HTTP 404. The resource you are looking for (or one of its dependencies) could have been removed, had its name changed, or is temporarily unavailable. Please review the following URL and make sure that it is spelled correctly.

Requested URL: /signout/callback

Version Information: Microsoft .NET Framework Version:4.0.30319; ASP.NET Version:4.7.3282.0

Okta%20Settings_Page_1 Okta%20Settings_Page_2

Here are clearer settings images I hope:

Hi @jodvt

Is the endpoint /signout/callback declared in your app? As per https://github.com/okta/samples-aspnet/blob/master/okta-hosted-login/okta-aspnet-mvc-example/Web.config#L20, by default, the logout URL is set to http://localhost:8080/Account/PostLogout.

1 Like

Yes, that was the issue on the log out problem. I should have looked at the controller more closely. Thank you.

I realized that the ability to view every page while logged out is just the design of the repo. So I have to figure that one out myself.