How do I delete ServiceNow Session (HTTPOnly) cookies during SSO login process?

BabyYoda
Tera Expert

Use case: User logs into client system as User A. User SSOs into ServiceNow (SN). User doesn't log off SN and closes tab/window. User logs out of client system and logs into client system as User B and then SSOs into SN. What I'm observing is SN doesn't show User B but User A, most likely because the glide session cookies are still active for User A, even though the client system user is User B. SN bypasses SSO check because session cookies exist. I'd like SN to address this. Until they do, the next best approach, I think, is deleting the cookie information.

One problem is I have no idea where you'd set or delete these cookies in the first place in SN. Second, I don't know the workflow steps SN uses for the SSO process. If I can isolate to where SN decides to trigger the MultiSSO authentication step, maybe I can add the cookie information there. I just don't know where and how to start. If I knew where cookies were set and were they could be deleted, that'd be a big help.

Anybody have any suggestions or guidance? Thank you for your help in advance.

5 REPLIES 5

Jahnavi6
Kilo Expert

Hi @BabyYoda were you able to fix this issue? 

Thanks in advance!