All the cookies set for authentication (reseller interface and management) are expired periodically - that includes folks that use the manage.cgi - I believe it's hourly
 
The cookie expires when the browser closes as well.

Charles Daminato
Product Manager (ccTLDs)
Tucows Inc. - [EMAIL PROTECTED]

-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of genie
Sent: March 16, 2001 9:02 AM
To: [EMAIL PROTECTED]
Subject: Timeout on user login

One of our customers raised a valid question.
 
Is there a time out on user session in manage domain?
 
EG if a user forgets to close a browser window while in domain
management screen and someone else comes to their computer
one hour later, will an unauthorized person be able to manage the domain?
 
I know we have a timeout session on reseller screen so I am assuming the
same security is applied through OpenSRS Manage Domain for our
Customer's benefit.
 
Anyone had a similar issue raised by their customers?
 
Cheers
Genie
 
 

Reply via email to