I suggest that we should do the aforementioned change.

*Reason*

Even though we use SAML as the authentication mechanism in the gateway as
of now, we might use different authentication mechanisms in near future.
And session handling should be independent of authentication mechanism.

So binding the name of the cookie to 'SAML' is ugly

WDYT ?



-- 
*Best Regards*

*Rushmin Fernando*
*Technical Lead*

WSO2 Inc. <http://wso2.com/> - Lean . Enterprise . Middleware

mobile : +94772891266
_______________________________________________
Dev mailing list
[email protected]
http://wso2.org/cgi-bin/mailman/listinfo/dev

Reply via email to