KnowledgeHub
Questions
Tags
Users
Search
Alex Rivera
|
Logout
Edit Question
Title
Body
I am building an ASP.NET web site that uses FormsAuthentication and a standard Session mechanism with configuration like: <authentication mode="Forms"> <forms cookieless="UseCookies" name=".MyAppAuth" loginUrl="~\Login.aspx" timeout="20"/> </authentication> ... <sessionState timeout="20" cookieless="UseCookies" /> It seems that the lifetime of an authentication cookie is not equal to the lifetime of the user Session. So ASP.NET doesn't guarantee that Session terminates when user logout, Session doesn't terminates before user logout. Is there a way to customize FormsAuthentication or\and the Session State mechanism to Reach these goals?
Tags (comma-separated)
Save Edits
Cancel