12

Specifications called for user logins to be stored in a session and not be persistent. When the session ends, you need to login again. The system deals with insurance policy information and persistent login was deemed a security risk.

First ticket submitted by the client after go-live? "Please make the login page remember my user name and password, or that I've logged in previously."

Comments
  • 0
    So don't do it. Or make their boss sign a waiver or something.
  • 0
    @Grundeir, we're definitely not doing it. That client needs to have a sit down with the department who presented us the specs and the department that made the change request.
  • 1
    Thats easy to fix, when browser asks "Do you want to remember your password?", click yes 😁
Add Comment