dimanche 10 janvier 2016

Web application session time, common value for cookie max-age value?

how long should a session last? of course each web application have it scenario

Should no value be set for cookie max-age so session ends when browser closes? not so good idea if browser does not get closed?

Should a session last 1, 2, 6, 24 hours or more? what are best practice for cookie session expiration?




Aucun commentaire:

Enregistrer un commentaire