Skip to content

Conversation

@backportbot-nextcloud
Copy link

backport of #13747

If the remember_login_cookie_lifetime is set to 0 this means we do not
want to use remember me at all. In that case we should also not creatae
a remember me cookie and should create a proper temp token.

Further this specifies that is not 0 the remember me time should always
be larger than the session timeout. Because else the behavior is not
really defined.

Signed-off-by: Roeland Jago Douma <[email protected]>
@MorrisJobke MorrisJobke merged commit e086a5e into stable15 Jan 23, 2019
@MorrisJobke MorrisJobke deleted the backport/13747/stable15 branch January 23, 2019 14:31
@MorrisJobke MorrisJobke mentioned this pull request Jan 30, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants