This error happens when the time between the request of a protected resource 
(and so, the presentation of the login form) and the submit to the 
j_security_check is greater than the session timeout value.

The internal mechanism of Tomcat stores the original request into the 
session...so, if the session has expired or invalidated, Tomcat cant know where 
to redirect and then raise that timeout error.

The default value of session invalidation in tomcat is 30 minutes.

Another cause can be an explicit  session invalidation by calling 
httpsession.invalidate() ... perhaps in the logon.jsp??

Regards


View the original post : 
http://www.jboss.org/index.html?module=bb&op=viewtopic&p=3871712#3871712

Reply to the post : 
http://www.jboss.org/index.html?module=bb&op=posting&mode=reply&p=3871712


-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click
_______________________________________________
JBoss-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/jboss-user

Reply via email to