Howdy, >hmmm. thanks for your thoughts, and good question. upon logout, among >other things, i am calling session.invalidate(). should i do something >different?
Invalidate is close to but not the same as destroy. Specifically, the container is not required to destroy a session when you invalidate it. For experimentation and to verify your solution, set the session timeout to 5 minutes in web.xml, create one session, then wait 5 minutes for it to be timed out and a bit more for it to be destroyed, and see if your listener handles it properly. Yoav Shapira This e-mail, including any attachments, is a confidential business communication, and may contain information that is confidential, proprietary and/or privileged. This e-mail is intended only for the individual(s) to whom it is addressed, and may not be saved, copied, printed, disclosed or used by anyone else. If you are not the(an) intended recipient, please immediately delete this e-mail from your computer system and notify the sender. Thank you. --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
