40574bc8ec
Before this fix an anonymous user was not able to access a resource that were configured with a bypass policy. This was due to a useless check of the userid in the auth session. Moreover, in the case of an anonymous user, we should not check the inactivity period since there is no session. Also refactor /verify endpoint for better testability and add tests in a new suite. |
||
---|---|---|
.. | ||
scenarii | ||
README.md | ||
config.yml | ||
environment.ts | ||
test.ts | ||
users_database.yml |
README.md
Short timeouts suite
This suite has been created to configure Authelia with short timeouts for sessions expiration in order to test the inactivity feature and the remember me feature.
Components
Authelia, nginx and a fake webmail for registering a device.
Tests
Related to user inactivity.