Uploaded image for project: 'PUBLIC - Liferay Portal Community Edition'
  1. PUBLIC - Liferay Portal Community Edition
  2. LPS-90464

User isn't logged out after SAML Session Idle Timeout or Session Maximum Age is reached

    Details

    • Fix Priority:
      4

      Description

      Steps to reproduce:

      1. Setup IdP and SP
      2. On Identity Provider page, set the Session Idle Timeout to 180 and the Session Maximum Age to 300
      3. Log out and log back in
      4. Idle for 3 minutes (180 seconds)
      5. Wait another 2 minutes (300 seconds total)

      Expected result:
      Expected to be logged out at Step 4 and Step 5

      Actual result:
      User is still logged in. 

      Reproduced on:
      Tomcat 9.0.10 + MySQL 5.7.25
      Portal master-private GIT ID: a9592e2d7fea42208023d053f0e6fedf4f6a2380

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                timothy.pak Timothy Pak
                Reporter:
                timothy.pak Timothy Pak
                Participants of an Issue:
                Recent user:
                Timothy Pak
              • Votes:
                0 Vote for this issue
                Watchers:
                1 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved:
                  Days since last comment:
                  9 weeks, 4 days ago

                  Packages

                  Version Package