You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@knox.apache.org by "Larry McCay (JIRA)" <ji...@apache.org> on 2016/03/11 04:22:40 UTC

[jira] [Resolved] (KNOX-688) KnoxSSO Authentication should not result in a valid JSESSIONID

     [ https://issues.apache.org/jira/browse/KNOX-688?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Larry McCay resolved KNOX-688.
------------------------------
    Resolution: Fixed

> KnoxSSO Authentication should not result in a valid JSESSIONID
> --------------------------------------------------------------
>
>                 Key: KNOX-688
>                 URL: https://issues.apache.org/jira/browse/KNOX-688
>             Project: Apache Knox
>          Issue Type: Improvement
>          Components: Server
>            Reporter: Larry McCay
>            Assignee: Larry McCay
>             Fix For: 0.9.0
>
>
> The use of the KnoxSSO service should not allow for authentication caching with the session via JSESSIONID. At least not by default.
> This improvement will allow session to be enabled for edge cases where this is required but by default will invalidate the created session upon cookie creation. The cookie will represent the session for these usecases and will not have any associated server side state.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)