IdP 3.1.2 - no default SP session lifetime
Cantor, Scott
cantor.2 at osu.edu
Sun Nov 8 14:12:17 EST 2015
On 11/8/15, 5:47 AM, "users on behalf of Phil Lello" <users-bounces at shibboleth.net on behalf of phil at dunlop-lello.uk> wrote:
>
>I notice that (unless I've corrupted my core config somehow), the default SAML2.SSO doesn't set p:maximumSPSessionLifetime, so AuthnStatement is missing a SessionNotOnOrAfter attribute; shouldn't this be populated by default from idp.session.timeout?
No, those aren't related settings.
-- Scott
More information about the users
mailing list