Hi,
I found the following problem while with Janrain's authorization, and
would like to know if there is a way to fix it within web2py:
While testing RPX logging-in in my app, I tried to login, logged out
and passed the computer to my mate who logged in to my app with his
own account. At first, there was a minor problem: even though I logged
out from my account, he could login into my account, unless he pressed
"It's not me". So there is no a "Forget me" option.
Than came the major problem(s): my mate logged out from my app. In
order to disallow me to login with his account into the different
services where Janrain is being used, I logged in the with my account
to my app using Janrain and the "It's not me" option. I went to a
different site (with RPX) that I tend to use, tried to login and the
mate's account pooped up. So far I'd gotten enough bugs, but it didn't
stop here: I logged in with my account to that website, logged out
from my account in my app and tried to login again. Mate's account
popped up at this point, my mate was near me so I tried to log in with
his account into my web2py app. When I logged in with his account, the
app recognized my account.

Question: is it possible to fix at least the last issue within web2py?
Thanks.

Reply via email to