canonical / identity-platform-login-ui

Login UI for the Canonical identity broker and identity provider solution
Apache License 2.0
11 stars 7 forks source link

Shorter 2FA lifetime #278

Open nsklikas opened 2 months ago

nsklikas commented 2 months ago

The kratos' session currently lasts for too long, should we ask the users to provide OTP more often?

This would mean to have 2 lifetimes for the user session, one for 1st FA (username/password) and one for 2nd FA (totp). Not sure if this makes, but I think that this is common for IdPs.

syncronize-issues-to-jira[bot] commented 2 months ago

Thank you for reporting us your feedback!

The internal ticket has been created: https://warthogs.atlassian.net/browse/IAM-1043.

This message was autogenerated