yalelibrary / YUL-DC

Preliminary issue tracking for Yale University Libraries Digital Collections project
3 stars 0 forks source link

Q: Session timeout? #2913

Closed mikeapp closed 3 months ago

mikeapp commented 3 months ago

Story

We should decide on the length of an active login session for DCS. Secondarily we should check the settings in Cognito for the valid duration of the security tokens.

Acceptance

K8Sewell commented 3 months ago

For Management - session timeout set to 30 minutes with this PR For Blacklight - session timeout set to 12 hours with this PR

K8Sewell commented 3 months ago

I do not have access to the Cognito set up in AWS so will likely need help from Jason Wu @jasonwuyale to investigate the current configuration. During my research I found that the default timeout is 1 hour, it can be set anywhere between 5 minutes and 1 day, and that the configuration is customizable.

References: