> I too would be surprised if folks didn't believe this is how it works 
> already. I don't expect most adopters give this much thought.

I'm in that camp.  I hadn't considered it and would have thought it
would work with default ticket timeouts.  This is doubly concerning
for me personally because I did a lot of work at one time to support
the warn flow for non-interactive X.509 auth back when the default
timeout was 30s.  I must admit I didn't regression test when the
default was reduced, and I'm quite certain that we're breaking in many
cases if not the common case.

M

-- 
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to