[Tickets #13448] Re: horde_secret_key cookie does not use configured session timeout

noreply at bugs.horde.org noreply at bugs.horde.org
Mon Aug 18 20:49:50 UTC 2014


DO NOT REPLY TO THIS MESSAGE. THIS EMAIL ADDRESS IS NOT MONITORED.

Ticket URL: http://bugs.horde.org/ticket/13448
------------------------------------------------------------------------------
  Ticket             | 13448
  Updated By         | horde at stefanseidel.info
  Summary            | horde_secret_key cookie does not use configured
                     | session timeout
  Queue              | Horde Framework Packages
  Version            | FRAMEWORK_5_1
  Type               | Enhancement
  State              | Rejected
  Priority           | 1. Low
  Milestone          |
  Patch              | 1
  Owners             |
------------------------------------------------------------------------------


horde at stefanseidel.info (2014-08-18 20:49) wrote:

> This is not correct, because a framework library cannot access Horde  
> configurations, and not necessary either.

This is a rejection of the solution, but what about the problem?

The horde session can be configured to survive a browser close, but it  
will be partially unusable because e.g. the IMAP login information  
cannot be recovered without the key. If that is intentional, it should  
at least be documented.





More information about the bugs mailing list