-
Bug
-
Resolution: Done
-
Major
-
7.4.0.Beta
-
3
-
False
-
False
-
-
-
-
-
-
Undefined
-
+
-
-
Jan 18 - Jan 29, EAP DOC Sprint 3: Feb 1-Feb 12, EAP DOC Sprint 5:March 1- 12
The session-id-length's description was updated on WFLY-7511, so it needs to update for EAP docs according to it.
session-id-length : The length of the generated session ID. Longer session ID’s are more secure.
Table A.64. servlet-container Attributes : session-id-length
https://access.redhat.com/documentation/en-us/red_hat_jboss_enterprise_application_platform/7.3/html-single/configuration_guide/index#servlet_container_attributes
The length of the generated session ID. Longer session ID's are more secure. This number refers to the number of bytes of randomness that are used to generate the session ID, the actual ID that is sent to the client will be base64 encoded so will be approximately 33% larger (e.g. a session id length of 30 will result in a cookie value of length 40).
- is cloned by
-
JBEAP-20988 [GSS](7.3.0.z) Update description for session-id-length
- Closed