incubator-jspwiki-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Murray Altheim <>
Subject Re: [jira] Created: (JSPWIKI-579) Recreating Sessions
Date Fri, 24 Jul 2009 21:41:08 GMT
Janne Jalkanen (JIRA) wrote:
> Recreating Sessions
> -------------------
>                  Key: JSPWIKI-579
>                  URL:
>              Project: JSPWiki
>           Issue Type: Improvement
>     Affects Versions: 2.8.2
>             Reporter: Janne Jalkanen
> People have displayed annoyance at the way our current session
> expiry works: If you start editing a page, and the editing takes 
> too long, the session may expire, and you are served a very 
> cryptic page describing how to log into JSPWiki, or told something
> about Session expiration, which, of course, tells really nothing
> to the user.
> Since this causes a dataloss of your edits, we should really try
> very hard to restart the Session. Obviously, this is not possible
> if user credentials have expired, but if the wiki is open to all,
> or CookieAuthenticationLoginModule is in use, then restarting
> the Session should be possible.

I agree that this can cause frustration and data loss, but in our
installations the simple solution was simply to set the timeout
to a full work day, i.e., 8 hours.  The side effects of this seem
to be minimal if any.

That's certainly sub-optimal but a simpler solution than trying to
recreate a session, which might have security implications. I do
agree that the current error message is not helpful and usually
confusing to users.


Murray Altheim <murray09 at altheim dot com>                       ===  = =                                     = =  ===
SGML Grease Monkey, Banjo Player, Wantanabe Zen Monk               = =  = =

       Boundless wind and moon - the eye within eyes,
       Inexhaustible heaven and earth - the light beyond light,
       The willow dark, the flower bright - ten thousand houses,
       Knock at any door - there's one who will respond.
                                       -- The Blue Cliff Record

View raw message