OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.


Help: OASIS Mailing Lists Help | MarkMail Help

security-use message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [Elist Home]

Subject: RE: Session Management Use case, scenario and issues

Thanks Dave, for providing us with a much needed session use case.

I have one comment.

> Issue: [UC-3-5:Timeout differences] Assuming source and destination
> timeouts are supported, what is the algorithm for determining the
> current timeout.  Example A.  Time out on source is 15 minutes.
> Timeout on destination is 10 minutes.  User has accessed source and
> destination 12 minutes ago.  Should timeout of destination occur (>10
> minutes) or not (<15 minutes for source).  Example B.  Timeout on
> source is 10 minutes, timeout on destination is 15 minutes, user last
> accessed both 12 minutes.  Same question.  Editor recommends: timeout
> master is the source web site, and destination web sites can shorten
> for their sites.  In case A, user times out of destination but not
> source.  In case B, user should have been deleted from destination
> site because the source will have sent a delete session message.

I request that we be given the option to vote that specifying the
algorithm is out of scope for the requirements and use case group.


[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [Elist Home]

Powered by eList eXpress LLC