Requiring reauthentication for new and expired sessions for a basic authentication service

To add an extra layer of security, configure Pega Platform to reauthenticate new sessions and to reauthenticate when reactivating an expired session. The timeout period is specified in the operator's access group or is managed by the application server or another external facility.

  1. Open the authentication service, and on the Basic credentials tab, expand the Advanced configuration settings section.
  2. Select Use access group timeout to use the authentication timeout values that are specified in the user access group to determine how long a user session remains inactive before users are prompted to identify themselves again. Clear Use access group timeout if timeout is managed by the application server or another external facility.
  3. Click Save.
Configuring operator provisioning for a basic authentication service