Uploaded image for project: 'RH-SSO'
  1. RH-SSO
  2. RHSSO-972

Tokens are not working as expected

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Major Major
    • RH-SSO-7.2.0.DR3
    • RH-SSO-7.0.0.GA
    • None
    • None

      Customer wants to achive the below in his RH-SSO configuration.

      1) E-mail links should expire after 2 days
      2) Idle sessions should expire after 1 hour
      3) Maximum time for session expiration should be 12 hours

      In an ideal sceranio it should work by setting "Login action timeout" to 2 days, "SSO Session IDLE" to 1 hour and "SSO Session MAX" to 12 hours but it is not giving expected result. After setting all these parameter value to two-days, email-link became valid for 2 days but unfortunately, the user session is also valid for 2 days which is not the desired behavior (it may lead to high risk if people forget to log out and share same pc).
      In conclusion, the issue is now moved from the email-link to the session timeout.

            mtrue-1 Mark True (Inactive)
            rhn-support-sidde Siddhartha De
            Votes:
            2 Vote for this issue
            Watchers:
            5 Start watching this issue

              Created:
              Updated:
              Resolved: