View Issue Details
ID | Project | Category | View Status | Date Submitted | Last Update |
---|---|---|---|---|---|
0008717 | CTT UA Test Case | 3 - Feature Request | public | 2023-02-28 17:35 | 2023-04-13 16:12 |
Reporter | Jim Luth | Assigned To | Paul Hunkar | ||
Priority | normal | Severity | minor | Reproducibility | always |
Status | acknowledged | Resolution | open | ||
Summary | 0008717: 6.5.3.2 Access Tokens | ||||
Description | Need to explicitly define requirements for expired tokens. | ||||
Tags | BSI | ||||
Files Affected | |||||
related to | 0007199 | closed | Matthias Damm | 10000-004: Services | 6.5.3.2 Access Tokens |
|
Clarify when to honor token validity expiration. Add remark to Part 4 (7.36.6 IssuedIdentityToken) regarding this behavior. |
|
Need input from Randy to continue |
|
Not sure what input is needed. AccessTokens expire. When they expire Session credentials should be revoked. Clients that use AccessTokens need to be aware of the expiry time and call ActivateSession with a new token prior to expiry of the existing Token if they want uninterrupted access. |
|
Added following clarification to 7.41.6 IssuedIdentityToken IssuedIdentityTokens have an expiration time, and a Server shall reject the credentials of the Session after the expiration of the token. The Session shall stay valid with an Anonymous user token if the Server allows Anonymous users. Clients should renew the token with ActivateSession before the expiration time to avoid communication interruption. |
|
Agreed to 1.05 text. Needs 1.04 Errata to close. |
|
Need to define test cases for this cloned issue |
Date Modified | Username | Field | Change |
---|---|---|---|
2023-02-28 17:35 | Jim Luth | New Issue | |
2023-02-28 17:35 | Jim Luth | Tag Attached: BSI | |
2023-02-28 17:35 | Jim Luth | Issue generated from: 0007199 | |
2023-02-28 17:35 | Jim Luth | Note Added: 0018813 | |
2023-02-28 17:35 | Jim Luth | Note Added: 0018814 | |
2023-02-28 17:35 | Jim Luth | Note Added: 0018815 | |
2023-02-28 17:35 | Jim Luth | Note Added: 0018816 | |
2023-02-28 17:35 | Jim Luth | Note Added: 0018817 | |
2023-02-28 17:35 | Jim Luth | Relationship added | related to 0007199 |
2023-02-28 17:35 | Jim Luth | Project | 10000-004: Services => Compliance Test Tool (CTT) Unified Architecture |
2023-02-28 17:35 | Jim Luth | Category | Spec => Api Change |
2023-04-13 16:10 | Paul Hunkar | Project | Compliance Test Tool (CTT) Unified Architecture => CTT UA Test Case |
2023-04-13 16:11 | Paul Hunkar | Category | Api Change => 3 - Feature Request |
2023-04-13 16:11 | Paul Hunkar | Note Added: 0019179 | |
2023-04-13 16:12 | Paul Hunkar | Assigned To | => Paul Hunkar |
2023-04-13 16:12 | Paul Hunkar | Status | new => acknowledged |