Previous Topic: End of Session Cleanup

Next Topic: Authorization Services

Timeouts

Agents can enforce session timeouts themselves or rely on the Policy Server to validate each request. Typically, caching of user sessions or privileges by the agent requires some form of timeout enforcement on the agent side. In this case, the agent is responsible for keeping track of the last access time and knowing when the session is going to expire.

Agents that do not cache can leverage the Policy Server's enforcement of timeouts. The following Agent API methods return the updated timeout information after every call:


Copyright © 2010 CA. All rights reserved. Email CA about this topic