Persistent Login

Опубликовано VladSavitsky

Модуль работает корректно в мультисайтинге, с модулями Shared SingOn и Login Toggoban.
Позволяет указать срок хранения сессии пользователя.
Требует отключить срок хранения кукис в settings.php

Описание с сайта: 

The Persistent Login module provides the familiar "Remember Me" option in the user login form.

The module's settings allow the administrator to:

* Control how long user logins are remembered.
* Control how many different persistent logins are remembered per user.
* Control which pages a remembered user can or cannot access without explicitly logging in with a username and password (e.g. you cannot edit your account or change your password with just a persistent login).

Each user's 'my account' view tab gives them option of explicitly clearing all of his/her remembered logins.

Persistent Login is independent of the PHP session settings and is more secure (and user-friendly) than simply setting a long PHP session lifetime. For a detailed discussion of the design and security of Persistent Login, see Improved Persistent Login Cookie Best Practice.

Persistent Login is compatible with: Login Toboggan.

Maintained by markus_petrux.

Опубликовано VladSavitsky

Модуль не заработал вместе с Login Toggoban и Shared SignOn. Происходили постоянные редиректы с одного домена на другой.
Альтернатива, которая работает с этими модулями - Persistent Login

Модуль умеет блокировать вывод повторов, если на сайте дважды залогинен под одним ником.

Описание с сайта: 

Fostering a relationship of trust with your visitors is essential when you aim to collect personal information and provide a service with which they feel secure. With this familiar little feature added to your installation you will portray the message of making every effort to address your users' security concerns and put them at ease. It shows that you stop at nothing to go the extra mile and allow them the peace of mind, to access your site with confidence from anywhere in the world knowing that you have taken every precaution to ensure their identity is safe.

Did you know that the default Drupal behaviour is to remember your session for the extent of 3 weeks and 2 days. This entails that if a user abandons a workstation, closes the browser window, experiences a power failure or any other unforeseen circumstance where they refrain from logging out, that their session will stay active on the server. When, at a later stage, they or anyone else for that matter, returns to your site using the same browser within the session cookie lifetime they will automatically be logged in without being prompted for authentication credentials. Can you imagine the colossal risk this places on users accessing your service from public terminals or shared workstations, with no means to their disposal of securing themselves against this threat.

If this concerns you, like it does myself and many others, you will also want a means to manage session lifetime. If you are looking for a way to configure quicker session expiry or want to give your users the choice not to be remembered at all, then you need search no morel. Download the latest supported release for D5.x or D6.x now. Extract the tarball archive into your modules directory and enable the module via the modules page. Administer => Site building => Modules from the menu. This will ensure a "Remember me" checkbox added below the password field on one and every log in form. Immediately improving security and gaining added confidence from visitors whom are well accustomed to this feature from other online facilities.

My promise to you:
Enabling this feature for your users will gain confidence in your site, similarly I want you to be confident in this product. Sessions are a crucial part of a web application and one of the most difficult to debug when things go wrong. The core focus of this project is to leave the smallest footprint on the normal Drupal behaviour while enabling this frequently requested use case in the simplest way possible. This module would love to hang around idle, doing nothing all day, at its happiest with all settings reset and left in their default state. This way you can be rest assured that its business as usual and the only change will be a "Remember me" checkbox added to log in forms. Nothing else, nada, Drupal just the way we know and love it...

I will also commit, where time allows, to follow the issue queue and find solutions for bugs, fixes for incompatibilities and consider new features in the scope of this project. You are welcome to leave your comments, remarks, rants, raves and praises but please be patient... all good things will come.

 
 
 

RSS-лента новостей

Dries Buytaert по-русски
]]>Русский поиск Drupal]]>

Перенос сайта из Joomla в Drupal
Перенос сайта из WordPress в Drupal

]]> Drupal - это бесплатная система управления контентом с открытым исходным кодом ]]>