[ 
https://issues.apache.org/jira/browse/OFBIZ-10047?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16295131#comment-16295131
 ] 

Michael Brohl commented on OFBIZ-10047:
---------------------------------------

bq.  I think that we should rather use true by default and deprecate the 
externalLoginKey stuff. This will be only in trunk and soon coming R17. So we 
will have one year to test it before release. 

A year? The last time we did a release soon after creating the branch, if I 
remember correctly, so it might be in a few weeks.

bq. Without people using it much it will stay in the background and we will not 
benefit of all those tests, notably in demos

I agree with you. I cannot estimate the possible side effects adn have not the 
time to dig deeper so it is just a gut feeling. Hope to get some more opinions 
from others.

bq.  For me that's different. I see it only as a replacement of 
externalLoginKey and it works only on one virtual host 

If this solution works with and there are no drawbacks when using this feature 
in a load balanced/clustered environment, I'm fine with it. It just should be 
tested because it might break things.

Thanks,
Michael

> Tomcat SSO
> ----------
>
>                 Key: OFBIZ-10047
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-10047
>             Project: OFBiz
>          Issue Type: Improvement
>          Components: framework
>    Affects Versions: Trunk
>            Reporter: James Yong
>            Assignee: James Yong
>            Priority: Minor
>         Attachments: OFBIZ-10047.patch, OFBIZ-10047.patch, OFBIZ-10047.patch, 
> OFBIZ-10047.patch, OFBIZ-10047.patch
>
>
> Proposing Tomcat SSO to be used in OFBiz to improve on Single-Sign-On.
> This aim to fix the issues mentioned in OFBIZ-6963, OFBIZ-6994.



--
This message was sent by Atlassian JIRA
(v6.4.14#64029)

Reply via email to