[Open Test Data] OpenID Connect frontchannel logout does not work reliably
After experience supporting OSDU R1, we can see that OpenID Connect frontchannel logout does not work reliably. All of the service providers send an HTML header X-Frame-Options deny. However, the OpenID specifications recommend to use an iFrame when implementing the frontchannel logout.
So unfortunately, this is a conflict. The X-Frame-Options header of deny is meant to prevent code from using an iFrame.
For some cases this mostly works but with sporadic errors. In other cases this never works.