I met some trouble while doing some perf tests, the following method throws an exception (IllegalStateException) when I'm calling /nuxeo/logout (not every time).
The session is invalited twice.
The first time by Seam's sessionManager:
The second time is explicit.
It's important to use Seam to invalidate a seam based session because it handles some custom state which must be cleaned.
The isValid state is handled by the servlet container (tomcat in our case) and is absolutely not exposed.
There are only 2 implementations of NuxeoAuthenticationSessionManager (WebEngine and Seam).
The web engine does nothing on `onBeforeSessionInvalidate`.
May be, we could update the NuxeoAuthenticationSessionManager and add a new operation named isInvalidationManager. Seam will return true.
- only the first sessionManager which return true will invalidate the session
- the standard invalidate method will be invoked only if no sessionManager handled the invalidation.