Verify that session lifetime and termination between Relying Parties (RPs) and Identity Providers (IdPs) behave as documented, requiring re-authentication as necessary such as when the maximum time between IdP authentication events is reached.
Verify that session lifetime and termination between Relying Parties (RPs) and Identity Providers (IdPs) behave as documented, requiring re-authentication as necessary such as when the maximum time between IdP authentication events is reached.
Verify that creation of a session requires either the user's consent or an explicit action, preventing the creation of new application sessions without user interaction.
Verify that creation of a session requires either the user's consent or an explicit action, preventing the creation of new application sessions without user interaction.