[Authentication] Open Issue: Transient Collections

Josef Kufner jk at myserver.cz
Sun Aug 30 15:19:15 PDT 2009


Michael Leupold píše v Ne 30. 08. 2009 v 23:35 +0200:
> Stef Walter schrieb:
[...] 
> >  * For the life of the user's desktop login session.
> > 
> > Any other ideas on how to bring this into the spec?
> 
> I'm thinking on which secrets browsers could use that:
> - afaik cookies have a lifetime that is neither
> - I wonder how to present a "remember but only till I log off" option to 
> the user

Do not forget that many users only suspend their machines, so "until I
log off" can be more than few months... There should be some 'big red
button' which forces to forgot these short-live passwords & cookies --
for example while suspending.


-- 
Hi! I'm a .signature virus! Copy me into your ~/.signature to help me
spread!

PGP: http://jk.myserver.cz/kontakt/jk-pgpkey.asc
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: Toto je =?UTF-8?Q?digit=C3=A1ln=C4=9B?=
 =?ISO-8859-1?Q?_podepsan=E1?= =?UTF-8?Q?_=C4=8D=C3=A1st?=
 =?ISO-8859-1?Q?_zpr=E1vy?=
Url : http://lists.freedesktop.org/archives/authentication/attachments/20090831/9e9fcb93/attachment.pgp 


More information about the Authentication mailing list