Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Investigate sliding window TGT expiry #23

Open
sbearcsiro opened this issue Aug 19, 2019 · 0 comments
Open

Investigate sliding window TGT expiry #23

sbearcsiro opened this issue Aug 19, 2019 · 0 comments
Labels

Comments

@sbearcsiro
Copy link
Contributor

As a user I don't want to have to login to an application after I've logged in in the past, consistent with other popular web applications such as Google, Facebook, Hacker News, et al.

Investigate tweaking the TGT expiration policy to use a sliding window with no hard timeout, possibly removing the remember me checkbox in the process (as all TGTs will be remember me, effectively).

This may also provide a smoother experience for oauth / oidc based services.

https://apereo.github.io/cas/5.3.x/installation/Configuration-Properties.html#tgt-expiration-policy

@ansell ansell added the IAD label Aug 19, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

2 participants