Revocation_endpoint is an OAuth 2.0 Endpoint that represents fully qualified URL of the server’s revocation endpoint and is described in OAuth 2.0 Token Revocation (RFC 7009).

Revocation_endpoint is defined in OpenID Connect

RFC 7009 states "The OAuth Client requests the revocation of a particular token by making an HTTP POST request to the token Revocation_endpoint URL. This URL MUST conform to the rules given in RFC 6749, Section 3.1. OAuth Clients MUST verify that the URL is an HTTPS URL.

The means to obtain the location of the Revocation_endpoint is out of the scope of OAuth 2.0 Token Revocation but is MAY be provided within the OpenID Connect Discovery endpoint

More Information#

There might be more information for this subject on one of the following: