Skip to content

Configure session lifetime depending on user permissions #7270

@kontrollanten

Description

@kontrollanten

Describe the problem to be solved

We'd like to increase the session time (oatuh2.token_lifetime.refresh_token) for our regular users (users with role User) to 1 - 2 years. For security reasons we'd like to keep the session time for admins and moderators relative short.

Describe the solution you would like

a) Configure session time for admins/moderators separately.
b) Configure session time for "consume only" users separately. With "consume only" I mean users who's not admin nor moderator and doesn't have permission to upload content.

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions