Hi Ben,
I have a site with members access only. Members login at another ‘co-site’.
Entering the part of the site driven by EE I provide logmein with username from the ‘co-site’.
Both sites have the same usernames. I disabled the anonymous login. When using ‘User Session Type’ with ‘cookies and session-id’ all works fine. I cannot use ‘session_id’ as it conflicts the ‘co-site’.
However when setting ‘User Session Type’ to only ‘cookies’ my members of the EE driven site are automatically logged-in after closing the browser, even the next day. It’s not safe.
I guess this is something in the twilight of logmein and EE but I need a direction where to look. Has EE or logmein the ‘remember me’ option activated and how can I disable that?
Or is it possible to change the setting of logmein so that users are always logged out after, say, two hours of inactivity.
