Consider modifying auto logging out

Back to General discussions forum

system_treetree     2014-12-17 20:10:05

On certain websites, such as banks and other places with sensitive information, it makes sense to have sessions ended after a short amount of time without interaction. I do not think this is necessary for a website like this one where the most sensitive information is the solutions to the problems we have solved. My session seems to expire after an hour or so (I don't know the exact number). In addtion, there does not seem to be an option to stay logged in, and Chrome does not offer to remember my password for me (though that may be its fault, not the websites). If I could change my password to be less secure but more memorable, I would. But I think the better solution would be to not have sessions expire by default, or keep everything the same but give the option to stay logged in.

Rodion (admin)     2014-12-19 06:45:52
User avatar

Hi! Thanks for your suggestion!

I feel you are quite right - short session is inconvenient especially if someone spends significant time to solve the problem and then returns to site to see he is logged out...

I believe that the existing session timeout was about 1.5 hours. I've tried to increase it to about 4 hours and going to test if it works :)

If you also will check and share whether it seems to you that session expiration time is now increased or not - this will be of much help!

There are some considerations which prevent me from increasing the value to, say, 24 hours at once - but if there will be no some awkward problems with current settings, I hope we'll increase it further. Otherwise we'll need some refactoring to make session functionality more stable...

Please login and solve 5 problems to be able to post at forum