<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Dynatrace MCP OAuth refresh fails after logout—supported approach for persistent per-user access? in Open Q&amp;A</title>
    <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-MCP-OAuth-refresh-fails-after-logout-supported/m-p/305194#M40386</link>
    <description>&lt;P&gt;&lt;SPAN&gt;Thanks Julius! Platform tokens could be a fallback, but we prefer OAuth so customers don’t have to manually create and manage tokens. Is there a supported way to obtain persistent per-user access to the hosted remote MCP server through Authorization Code OAuth—such as &lt;/SPAN&gt;offline_access&lt;SPAN&gt; or an equivalent? We reproduced refresh failure after Dynatrace logout in VS Code too, and would appreciate clarification on the expected session lifetime and refresh behavior.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 09 Oct 2026 20:43:42 GMT</pubDate>
    <dc:creator>vedant05422</dc:creator>
    <dc:date>2026-10-09T20:43:42Z</dc:date>
    <item>
      <title>Dynatrace MCP OAuth refresh fails after logout—supported approach for persistent per-user access?</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-MCP-OAuth-refresh-fails-after-logout-supported/m-p/305187#M40384</link>
      <description>&lt;P&gt;We’re connecting Rhythms to Dynatrace’s hosted remote MCP server using a confidential OAuth client with Authorization Code + PKCE. We need reliable per-user access without requiring users to remain signed into Dynatrace in their browser.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Normal refresh works. However, after explicitly signing out of Dynatrace, refresh fails. We independently reproduced this in VS Code on October 6:&lt;/SPAN&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN&gt;Before logout: refresh succeeded.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;After logout: HTTP 400, &lt;/SPAN&gt;invalid_grant&lt;SPAN&gt;, &lt;/SPAN&gt;UNSUCCESSFUL_OAUTH_REFRESH_TOKEN_VALIDATION_FAILED&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;VS Code required a new login.&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN&gt;Separately, Rhythms has encountered &lt;/SPAN&gt;UNSUCCESSFUL_OAUTH_REFRESH_TOKEN_MISSING_SESSION&lt;SPAN&gt; with “User session is no longer active.” We haven’t established whether all these failures have the same cause.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Could the OAuth/MCP team clarify:&lt;/SPAN&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;SPAN&gt;Is refresh-token invalidation after logout expected?&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;What are the refresh-token and underlying session lifetimes, including idle limits?&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Is &lt;/SPAN&gt;offline_access&lt;SPAN&gt;, or an equivalent persistent-access option, available for Authorization Code MCP clients? How is it enabled, and does trial versus paid account status matter?&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;What is the supported approach for reliable background, per-user MCP access without frequent reconnection or switching to client credentials?&lt;/SPAN&gt;&lt;/LI&gt;&lt;/OL&gt;</description>
      <pubDate>Fri, 09 Oct 2026 07:50:03 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-MCP-OAuth-refresh-fails-after-logout-supported/m-p/305187#M40384</guid>
      <dc:creator>vedant05422</dc:creator>
      <dc:date>2026-10-09T07:50:03Z</dc:date>
    </item>
    <item>
      <title>Re: Dynatrace MCP OAuth refresh fails after logout—supported approach for persistent per-user access?</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-MCP-OAuth-refresh-fails-after-logout-supported/m-p/305190#M40385</link>
      <description>&lt;P&gt;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/109128"&gt;@vedant05422&lt;/a&gt;&amp;nbsp;can your users use platform tokens instead? &lt;A href="https://docs.dynatrace.com/docs/shortlink/platform-tokens#my-platform-tokens" target="_blank"&gt;https://docs.dynatrace.com/docs/shortlink/platform-tokens#my-platform-tokens&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 09 Oct 2026 10:27:08 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-MCP-OAuth-refresh-fails-after-logout-supported/m-p/305190#M40385</guid>
      <dc:creator>Julius_Loman</dc:creator>
      <dc:date>2026-10-09T10:27:08Z</dc:date>
    </item>
    <item>
      <title>Re: Dynatrace MCP OAuth refresh fails after logout—supported approach for persistent per-user access?</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-MCP-OAuth-refresh-fails-after-logout-supported/m-p/305194#M40386</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Thanks Julius! Platform tokens could be a fallback, but we prefer OAuth so customers don’t have to manually create and manage tokens. Is there a supported way to obtain persistent per-user access to the hosted remote MCP server through Authorization Code OAuth—such as &lt;/SPAN&gt;offline_access&lt;SPAN&gt; or an equivalent? We reproduced refresh failure after Dynatrace logout in VS Code too, and would appreciate clarification on the expected session lifetime and refresh behavior.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 09 Oct 2026 20:43:42 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-MCP-OAuth-refresh-fails-after-logout-supported/m-p/305194#M40386</guid>
      <dc:creator>vedant05422</dc:creator>
      <dc:date>2026-10-09T20:43:42Z</dc:date>
    </item>
  </channel>
</rss>

