eduvpn/vpn-lib-common

bind mellon session to app session

Closed this issue · 1 comments

the 2fa user binding error is triggered when the mellon session changes, i.e. a different user_id is used while the app session is still there.

Potentially this can be triggered by an expiring SAML session after which the user authenticates with a different account.

still need to fix the unit test for this.