PingOne Platform APIs

Reset Authentication Session by Session Token

 

POST {{apiPath}}/environments/{{envID}}/sessions/me

Use POST {{apiPath}}/environments/{{envID}}/sessions/me to reset authentication for the session identified by the session token cookie (me). This effectively signs the user out of the SSO session. The user is then required to be authenticated again for the SSO session indicated by the session token cookie.

You need to include in the header, Content-Type set to application/vnd.pingidentity.sso.session.logout, and Cookie set to "ST={{token}}". The request body is empty.

A successful execution returns 204 No Content.

Prerequisites

  • Refer to Sessions for important overview information.

Headers

Authorization      Bearer {{accessToken}}

Content-Type      application/vnd.pingidentity.sso.session.logout

Cookie      ST={{token}}

Example Request

  • cURL

  • C#

  • Go

  • HTTP

  • Java

  • jQuery

  • NodeJS

  • Python

  • PHP

  • Ruby

  • Swift

curl --location --globoff --request POST '{{apiPath}}/environments/{{envID}}/sessions/me' \
--header 'Content-Type: application/vnd.pingidentity.sso.session.logout' \
--header 'Cookie: ST={{token}}' \
--header 'Authorization: Bearer {{accessToken}}'
var options = new RestClientOptions("{{apiPath}}/environments/{{envID}}/sessions/me")
{
  MaxTimeout = -1,
};
var client = new RestClient(options);
var request = new RestRequest("", Method.Post);
request.AddHeader("Content-Type", "application/vnd.pingidentity.sso.session.logout");
request.AddHeader("Cookie", "ST={{token}}");
request.AddHeader("Authorization", "Bearer {{accessToken}}");
RestResponse response = await client.ExecuteAsync(request);
Console.WriteLine(response.Content);
package main

import (
  "fmt"
  "net/http"
  "io"
)

func main() {

  url := "{{apiPath}}/environments/{{envID}}/sessions/me"
  method := "POST"

  client := &http.Client {
  }
  req, err := http.NewRequest(method, url, nil)

  if err != nil {
    fmt.Println(err)
    return
  }
  req.Header.Add("Content-Type", "application/vnd.pingidentity.sso.session.logout")
  req.Header.Add("Cookie", "ST={{token}}")
  req.Header.Add("Authorization", "Bearer {{accessToken}}")

  res, err := client.Do(req)
  if err != nil {
    fmt.Println(err)
    return
  }
  defer res.Body.Close()

  body, err := io.ReadAll(res.Body)
  if err != nil {
    fmt.Println(err)
    return
  }
  fmt.Println(string(body))
}
POST /environments/{{envID}}/sessions/me HTTP/1.1
Host: {{apiPath}}
Content-Type: application/vnd.pingidentity.sso.session.logout
Cookie: ST={{token}}
Authorization: Bearer {{accessToken}}
OkHttpClient client = new OkHttpClient().newBuilder()
  .build();
MediaType mediaType = MediaType.parse("application/vnd.pingidentity.sso.session.logout");
RequestBody body = RequestBody.create(mediaType, "");
Request request = new Request.Builder()
  .url("{{apiPath}}/environments/{{envID}}/sessions/me")
  .method("POST", body)
  .addHeader("Content-Type", "application/vnd.pingidentity.sso.session.logout")
  .addHeader("Cookie", "ST={{token}}")
  .addHeader("Authorization", "Bearer {{accessToken}}")
  .build();
Response response = client.newCall(request).execute();
var settings = {
  "url": "{{apiPath}}/environments/{{envID}}/sessions/me",
  "method": "POST",
  "timeout": 0,
  "headers": {
    "Content-Type": "application/vnd.pingidentity.sso.session.logout",
    "Cookie": "ST={{token}}",
    "Authorization": "Bearer {{accessToken}}"
  },
};

$.ajax(settings).done(function (response) {
  console.log(response);
});
var request = require('request');
var options = {
  'method': 'POST',
  'url': '{{apiPath}}/environments/{{envID}}/sessions/me',
  'headers': {
    'Content-Type': 'application/vnd.pingidentity.sso.session.logout',
    'Cookie': 'ST={{token}}',
    'Authorization': 'Bearer {{accessToken}}'
  }
};
request(options, function (error, response) {
  if (error) throw new Error(error);
  console.log(response.body);
});
import requests

url = "{{apiPath}}/environments/{{envID}}/sessions/me"

payload = {}
headers = {
  'Content-Type': 'application/vnd.pingidentity.sso.session.logout',
  'Cookie': 'ST={{token}}',
  'Authorization': 'Bearer {{accessToken}}'
}

response = requests.request("POST", url, headers=headers, data=payload)

print(response.text)
<?php
require_once 'HTTP/Request2.php';
$request = new HTTP_Request2();
$request->setUrl('{{apiPath}}/environments/{{envID}}/sessions/me');
$request->setMethod(HTTP_Request2::METHOD_POST);
$request->setConfig(array(
  'follow_redirects' => TRUE
));
$request->setHeader(array(
  'Content-Type' => 'application/vnd.pingidentity.sso.session.logout',
  'Cookie' => 'ST={{token}}',
  'Authorization' => 'Bearer {{accessToken}}'
));
try {
  $response = $request->send();
  if ($response->getStatus() == 200) {
    echo $response->getBody();
  }
  else {
    echo 'Unexpected HTTP status: ' . $response->getStatus() . ' ' .
    $response->getReasonPhrase();
  }
}
catch(HTTP_Request2_Exception $e) {
  echo 'Error: ' . $e->getMessage();
}
require "uri"
require "net/http"

url = URI("{{apiPath}}/environments/{{envID}}/sessions/me")

http = Net::HTTP.new(url.host, url.port);
request = Net::HTTP::Post.new(url)
request["Content-Type"] = "application/vnd.pingidentity.sso.session.logout"
request["Cookie"] = "ST={{token}}"
request["Authorization"] = "Bearer {{accessToken}}"

response = http.request(request)
puts response.read_body
var request = URLRequest(url: URL(string: "{{apiPath}}/environments/{{envID}}/sessions/me")!,timeoutInterval: Double.infinity)
request.addValue("application/vnd.pingidentity.sso.session.logout", forHTTPHeaderField: "Content-Type")
request.addValue("ST={{token}}", forHTTPHeaderField: "Cookie")
request.addValue("Bearer {{accessToken}}", forHTTPHeaderField: "Authorization")

request.httpMethod = "POST"

let task = URLSession.shared.dataTask(with: request) { data, response, error in
  guard let data = data else {
    print(String(describing: error))
    return
  }
  print(String(data: data, encoding: .utf8)!)
}

task.resume()

Example Response

204 No Content