Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Force logout for unlicesed users

Alexander Lukashov January 20, 2022

Hi

 

We disabled annonimous access to our confluence but there is an interesting case

If a user have an auth cookie but lost his license, that user still can open confluence

Yes that user won't be able to see anything except "You are not permitted to perform this operation." but we're looking for a way to automatically logout such users when they try to open confluence

I didn't find any corresponding option in configuration settings so wonder if there is such a feature indeed

Does anybody know?

1 answer

0 votes
Fabio Racobaldo _Herzum_
Community Champion
January 21, 2022

Hi @Alexander Lukashov ,

user cookie is valid based on default session timeout configured for your system. By default it should be 300 minutes.

https://confluence.atlassian.com/jirakb/change-the-default-session-timeout-to-avoid-user-logout-in-jira-server-604209887.html

There was a request to force user session to expire (https://jira.atlassian.com/browse/CONFSERVER-32683) but it was not implemented.

I use https://marketplace.atlassian.com/apps/20909/javamelody-monitoring-plugin?tab=overview&hosting=datacenter plugin to do that.

Hope this helps,

Fabio

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events