> Peter, in your experience with the Grails community, how often does > the desire for this type of method call or JSP tag remain after they > learn about the semantics between being remembered and authenticated?
I think I've seen it a few times, but not many. That said, if "remembered" status is a core part of Shiro, then I think an easy way of checking for it would be a good idea. Much nicer to call isRemembered() than subject.getPrincipal() != null && !subject.isAuthenticated().
