[pubcookie-dev] Re: Clearing Username on logout
Jon Miner
miner at doit.wisc.edu
Fri Jun 9 12:52:05 PDT 2006
Any thoughts on what I should do with "Case 3"
(LOGOUT_ACTION_CLEAR_L_NO_APP)?
Should I change that section to default the other way, but be configured
by the same statement? Or should I leave it alone?
jon
* Nathan Dors (dors at cac.washington.edu) [060609 14:34]:
> Agreed. Add it in and I'll verify it works as expected.
>
> -Nathan
>
>
> On Fri, 9 Jun 2006, Jon Miner wrote:
>
> >We already have static_user_field disabled, the issue really is that if
> >the previous user doesn't close the browser, they don't want to see the
> >username of the previous person.
> >
> >We can't force people to always do the right thing, and the interest
> >here is to at least help out that way. Like you say, it's just a site
> >policy.
> >
> >jon
> >
> >* Nathan Dors (dors at cac.washington.edu) [060609 14:01]:
> >>FWIW, the static_user_field site policy applies to the editability
> >>of the userid. Not user if it's 3 options would help here:
> >>
> >>http://www.pubcookie.org/docs/config.html#static_user_field
> >>
> >>In general, our preference/policy is to impose a single identity
> >>per browsing session. So, even though our portal invokes
> >>LOGOUT_ACTION_CLEAR_L on logout, users must close their browser to
> >>change identities. For the rare occasion when someone is in a jam,
> >>we offer the CLEAR_L_NO_APP logout end-point on our login server,
> >>but they have to find the URL thru our end-user help site.
> >>
> >>Anyway, your clear_username_at_logout site policy seems like a
> >>reasonable option. The default should keep the current behavior
> >>though, huh.
> >>
> >>-Nathan
> >
> >--
> >.Jonathan J. Miner------------------Division of Information Technology.
> >|miner at doit.wisc.edu University Of Wisconsin - Madison|
> >|608/262.9655 Room 3146 Computer Science|
> >`---------------------------------------------------------------------'
> >
> >It won't be covered in the book. The source code has to be useful for
> >something, after all... :-)
> > -- Larry Wall in <10160 at jpl-devvax.JPL.NASA.GOV>
> > (82/721)
> >
--
.Jonathan J. Miner------------------Division of Information Technology.
|miner at doit.wisc.edu University Of Wisconsin - Madison|
|608/262.9655 Room 3146 Computer Science|
`---------------------------------------------------------------------'
If you want to program in C, program in C. It's a nice language. I
use it occasionally... :-)
-- Larry Wall in <7577 at jpl-devvax.JPL.NASA.GOV>
(67/721)
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 2132 bytes
Desc: not available
Url : http://mailman1.u.washington.edu/pipermail/pubcookie-dev/attachments/20060609/fab2d5b0/smime.bin
More information about the pubcookie-dev
mailing list