Return-Path: X-Original-To: apmail-cxf-issues-archive@www.apache.org Delivered-To: apmail-cxf-issues-archive@www.apache.org Received: from mail.apache.org (hermes.apache.org [140.211.11.3]) by minotaur.apache.org (Postfix) with SMTP id 6F7C3EA9F for ; Fri, 25 Jan 2013 10:53:15 +0000 (UTC) Received: (qmail 65369 invoked by uid 500); 25 Jan 2013 10:53:15 -0000 Delivered-To: apmail-cxf-issues-archive@cxf.apache.org Received: (qmail 65256 invoked by uid 500); 25 Jan 2013 10:53:15 -0000 Mailing-List: contact issues-help@cxf.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: dev@cxf.apache.org Delivered-To: mailing list issues@cxf.apache.org Received: (qmail 65237 invoked by uid 99); 25 Jan 2013 10:53:14 -0000 Received: from arcas.apache.org (HELO arcas.apache.org) (140.211.11.28) by apache.org (qpsmtpd/0.29) with ESMTP; Fri, 25 Jan 2013 10:53:14 +0000 Date: Fri, 25 Jan 2013 10:53:14 +0000 (UTC) From: "Colm O hEigeartaigh (JIRA)" To: issues@cxf.apache.org Message-ID: In-Reply-To: References: Subject: [jira] [Commented] (FEDIZ-48) Support wfresh properly in the IdP MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable X-JIRA-FingerPrint: 30527f35849b9dde25b450d4833f0394 [ https://issues.apache.org/jira/browse/FEDIZ-48?page=3Dcom.atlassian.j= ira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=3D135625= 95#comment-13562595 ]=20 Colm O hEigeartaigh commented on FEDIZ-48: ------------------------------------------ Hi Oli, I'm a bit confused by the definition in the spec: > An IP/STS SHOULD NOT issue a token with a longer lifetime. If specified = as =E2=80=9C0=E2=80=9D it indicates a request for > the IP/STS to re-prompt= the user for authentication before issuing the token. So if the RP passes "wfresh=3D0", what should the subsequent Expiry date of= the STS issued token be? According to the above it should not be longer th= an the given value of wfresh. Colm. =20 > Support wfresh properly in the IdP > ---------------------------------- > > Key: FEDIZ-48 > URL: https://issues.apache.org/jira/browse/FEDIZ-48 > Project: CXF-Fediz > Issue Type: Improvement > Affects Versions: 1.0.2 > Reporter: Colm O hEigeartaigh > Assignee: Colm O hEigeartaigh > Fix For: 1.1.0, 1.0.3 > > > This task is to properly support wfresh in the IdP. Currently, we only su= pport "wfresh" in the context of forcing a re-authentication if it's equal = to "0". We should also use it to specify the Lifetime when requesting a tok= en from the STS. -- This message is automatically generated by JIRA. If you think it was sent incorrectly, please contact your JIRA administrato= rs For more information on JIRA, see: http://www.atlassian.com/software/jira