Extending LDP timeouts for 2fa users

Cantor, Scott cantor.2 at osu.edu
Tue Feb 18 08:20:28 EST 2020


On 2/18/20, 6:17 AM, "users on behalf of Adam Bishop" <users-bounces at shibboleth.net on behalf of Adam.Bishop at jisc.ac.uk> wrote:

> Can I change the user timeout based on the presence of this LDAP attribute? i.e., if a user has authenticated with a
> token, give them an idle timeout of 2 hours, lifetime of 1 day instead of our default 30 minutes/2 hours.

The lifetime is static in all versions. The timeout will be effectively non-static in V4, but static in V3.
 
-- Scott




More information about the users mailing list