Skip to main content

Session timeout for XOA

VKB-1157How-to
📦 Applies to
Xen Orchestra
🗓️ Created
2025-03-03
🔄 Updated
2025-03-03

Environment​

  • A Xen Orchestra Appliance (XOA).

  • The setting lives in the xo-server configuration file:

    /usr/local/lib/node_modules/xo-server/config.toml

Procedure​

  1. Open the config.toml file and find the section that begins with [authentication], then look for these lines:

    # Default to `undefined`, ie as long as the browser is not restarted
    #
    # https://developer.mozilla.org/fr/docs/Web/HTTP/Headers/Set-Cookie#Session_cookie
    #sessionCookieValidity = '10 hours'
  2. Uncomment the last line and adjust the '10 hours' to a time of your choosing.

  3. Restart xo-server afterwards using this command:

    root@xoa
    # systemctl restart xo-server

Verification​

After xo-server restarts, sessions expire after the validity duration you configured instead of lasting until the browser is restarted.