← Back to plugin index

User Specific Timeout Provider

Description

Timeouts are applied according to the "Role Timeout Rules".

  • If no rule matches, the "Default Idle Timeout" and "Default Lifetime" timeouts are applied.
  • If no rule matches and only one of "Default Idle Timeout" and "Default Lifetime" is set, the other value is implicitly set to 0, which is the default Gateway timeout.
  • If no rule matches and neither "Default Idle Timeout" nor "Default Lifetime" are set, the role timeouts are used. If none are set, the default Gateway timeouts are applied.

0 can be used to set the default Gateway timeout value explicitly.

Type name
UserSpecificTimeoutProvider
Class
com.airlock.iam.login.application.configuration.targetapp.UserSpecificTimeoutProviderConfig
May be used by
Properties
Context Data String Value Provider (contextDataStringValueProvider)
Description
The Context Data string, which is matched against the rules defined in the "Role Timeout Rules".
Attributes
Plugin-Link
Mandatory
Assignable plugins
Role Timeout Rules (roleTimeoutRules)
Description
Rules, which are matched against the Context Data string. If a rule matches, the according "Idle Timeout" and "Lifetime" are applied. Only the first match is applied. If no rule matches, "Default Idle Timeout" and "Default Lifetime" are applied.
Attributes
Plugin-List
Mandatory
Assignable plugins
Default Idle Timeout [s] (defaultIdleTimeout)
Description
"Default Idle Timeout" in seconds. This value is applied, when no "Role Timeout Rule" matches. The idle timeout configured on the Gateway is applied when this value is not set and:
  • the role doesn't have an idle timeout
  • the role does have an idle timeout and a lifetime has been set in this plugin
Attributes
Integer
Optional
Default Lifetime [s] (defaultLifetime)
Description
Default Lifetime in seconds. This value is applied, when no "Role Timeout Rule" matches. The lifetime configured on the Gateway (WAF) is applied when this value is not set and:
  • the role doesn't have a lifetime
  • the role does have a lifetime and an idle timeout has been set in this plugin
Attributes
Integer
Optional
YAML Template (with default values)

type: UserSpecificTimeoutProvider
id: UserSpecificTimeoutProvider-xxxxxx
displayName: 
comment: 
properties:
  contextDataStringValueProvider:
  defaultIdleTimeout:
  defaultLifetime:
  roleTimeoutRules: