I was wondering if anyone could explain the difference to me between these 
three constructs: the CASTGC cookie, the JSESSIONID session var, and the 
web.xml <session-timeout/> element.

What does CAS use each of these for?  Which of these controls whether the user 
is logged in or not?  Which of these are required for the user to have a valid, 
open session with the CAS server?

-- 
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to