IdP 3.1.2 - no default SP session lifetime
Phil Lello
phil at dunlop-lello.uk
Sat Nov 7 17:41:58 EST 2015
I notice that (unless I've corrupted my core config somehow), the default
SAML2.SSO doesn't set p:maximumSPSessionLifetime, so AuthnStatement is
missing a SessionNotOnOrAfter attribute; shouldn't this be populated by
default from idp.session.timeout?
Phil
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/dev/attachments/20151107/fefa33dc/attachment.html>
More information about the dev
mailing list