Uploaded image for project: 'Satellite'
  1. Satellite
  2. SAT-24382

Personal access tokens should have a default expiration

XMLWordPrintable

    • 0
    • False
    • Moderate
    • sat-endeavour
    • None
    • None
    • None
    • None

      Problem Statement

      Personal access tokens should have a default expiration of something like 30,60 or 90 days to prevent users from creating tokens that are forgotten about and able to be used by a malicious personality at some future date. This would align with where security standards are trending for tokens and certificates. Users should still be able to set an expiration date for in the future but this should be an active choice rather than the default.

              Unassigned Unassigned
              ehelms@redhat.com Eric Helms
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated: