Github user krishna-pandey commented on the issue:
https://github.com/apache/zeppelin/pull/2550
@VipinRathor Also, I think it will be a good idea to mention an one-liner
in the shiro.ini.template "Enable 'cookie.secure = true' only when Zeppelin is
running on HTTPS" or something similar.
If enabled when Zeppelin is running on HTTP, Browser does not set the
cookie and hence user session won't be maintained.
---
If your project is set up for it, you can reply to this email and have your
reply appear on GitHub as well. If your project does not have this feature
enabled and wishes so, or if the feature is enabled but not working, please
contact infrastructure at [email protected] or file a JIRA ticket
with INFRA.
---