Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-54504

accessTokenInactivityTimeout Oauth config does not log out user session from OCP Web Console

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • 4.17.z
    • Management Console
    • None
    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      Description of problem:

      When `accessTokenInactivityTimeout` in the oauth config, only the OC login session gets logged out due to inactivity. 
      It's not the case for web console login, it stays logged in even when the inactivity seconds go above the defined value in `accessTokenInactivityTimeout`

      Version-Release number of selected component (if applicable):

          

      How reproducible:

          Always

      Steps to Reproduce:

          1. Set `accessTokenInactivityTimeout` in `oauth.spec.tokenConfig`.
          2. Login again to the Web Console and leave it.
          3. Wait till the defined value in `accessTokenInactivityTimeout`     

      Actual results:

          The user session does not logout after inactivity.

      Expected results:

          The user session should log out after the timeout value.

      Additional info:

          

              jhadvig@redhat.com Jakub Hadvig
              rhn-support-ssardar Sameer Sardar
              None
              None
              YaDan Pei YaDan Pei
              None
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated: