Howdy,

>hmmm. thanks for your thoughts, and good question. upon logout, among
>other things, i am calling session.invalidate(). should i do something
>different?

Invalidate is close to but not the same as destroy.  Specifically, the
container is not required to destroy a session when you invalidate it.

For experimentation and to verify your solution, set the session timeout
to 5 minutes in web.xml, create one session, then wait 5 minutes for it
to be timed out and a bit more for it to be destroyed, and see if your
listener handles it properly.

Yoav Shapira



This e-mail, including any attachments, is a confidential business communication, and 
may contain information that is confidential, proprietary and/or privileged.  This 
e-mail is intended only for the individual(s) to whom it is addressed, and may not be 
saved, copied, printed, disclosed or used by anyone else.  If you are not the(an) 
intended recipient, please immediately delete this e-mail from your computer system 
and notify the sender.  Thank you.


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to