Fwd: IdP 3.1.2 - no default SP session lifetime

Phil Lello phil at dunlop-lello.uk
Sun Nov 8 05:47:24 EST 2015


I notice that (unless I've corrupted my core config somehow), the default
SAML2.SSO doesn't set p:maximumSPSessionLifetime, so AuthnStatement is
missing a SessionNotOnOrAfter attribute; shouldn't this be populated by
default from idp.session.timeout?

Phil
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20151108/6e1b00de/attachment.html>


More information about the users mailing list