I understand that checking the authentication token expiry time on every request to see whether it needs renewing is the implementation that OpenText have used for authentication token management.
I am unhappy with this as it means I need to mainatin a reference to the username and the password which I wish to discard after the initial login which obtaines the token. This provides a very secure design model.
Question:
Can Content Server be configured so as the authentication token expiration date time is refreshed to say 30 minutes after the current request (a sliding expiration mechanism) or are we stuck with this rather inflexible absolute expiry time needing to be checked on every request?
Thank you