A re-attack message is usually due to clicking Refresh on the browser, while the URL of your browser still contains many OpenID parameters. Try to clear everything after? check or just enter the url and press enter. If this does not work, try adding a question mark to the URL and press enter.
How to log out? DotNetOpenId uses forms authentication by default, so you can disable the user by calling FormsAuthentication.SignOut ().
Andrew Arnott
source share