Never invalidate http session
This is a quick fix for HTTP session timeout which will result in some strange behavior in client devices. THIS MUST BE REVOVED if client JS code is able to re-authenticate from local storage after session timeout.
Please register or sign in to comment