[ 
https://issues.apache.org/jira/browse/KNOX-688?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15185600#comment-15185600
 ] 

ASF subversion and git services commented on KNOX-688:
------------------------------------------------------

Commit e341e597f8a3817bc1db884695774e9dfd5d9a51 in knox's branch 
refs/heads/master from [~lmccay]
[ https://git-wip-us.apache.org/repos/asf?p=knox.git;h=e341e59 ]

KNOX-688 - KnoxSSO Authentication should not result in a valid JSESSIONID

> KnoxSSO Authentication should not result in a valid JSESSIONID
> --------------------------------------------------------------
>
>                 Key: KNOX-688
>                 URL: https://issues.apache.org/jira/browse/KNOX-688
>             Project: Apache Knox
>          Issue Type: Improvement
>          Components: Server
>            Reporter: Larry McCay
>            Assignee: Larry McCay
>             Fix For: 0.9.0
>
>
> The use of the KnoxSSO service should not allow for authentication caching 
> with the session via JSESSIONID. At least not by default.
> This improvement will allow session to be enabled for edge cases where this 
> is required but by default will invalidate the created session upon cookie 
> creation. The cookie will represent the session for these usecases and will 
> not have any associated server side state.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to