Now first a user shouldn't leave their computer unattended without locking it first anyway, but we all know that from time to time this will happen. No matter how many times you explain the possibility of something happening users will "forget" security protocols that are in place to protect them and the systems. So you try to help out the situation by applying one easy setting in SharePoint 2007.
The SharePoint 2007 Session state is a great way to make sure that if a user is inactive on the website for a set amount of time (meaning they probably stepped away or are on a call or some other important business) the website will log them off the website and prompt them to log back in when they return. This can aid in the protection of the users account and the website, again not 100% but it is better than allowing the session to stay active for an unlimited amount of time.
So to configure the session state in SharePoint 2007 so that it times out inactive session, just follow these steps:
Open the Central Administration Webpage
Click the Application Management Tab
Click Configure Session State Link (Office SharePoint Server Shared Services Section)
Click Check Box (to enable Session State)
Set time limit (set in minutes mine is set to 10 minutes)
Click OK
SharePoint will process your new settings and when completed it will display a message telling you it was successful. Now you can test out your website and session state by opening your website, let it sit idle for the time limit you set (10 minutes for mine) then try to access something on the page. It should tell you the session expired and that you need to log back in to get access to the site.
There are some things to think about before applying the session state time limit, you will probably want to let your users know that this is going to be put into action and let them know the time limits. If they previously would let their screen idle for long periods of time and never were prompted to login again, they might call asking why they now have to login to the page after being away from their computer. Users don't like change and might fight it but if you give them ample warning you will probably have very little push back. You will also want to make sure that the session time limit is long enough to allow users to do their daily work on the pages and isn't timing them out to quickly. I admit 10 minutes isn't very long, so you might want to adjust yours to whatever best suits your users, remember security is good but you also want to allow productivity. Too much security could hinder the productivity then it isn't worth it, you have to find a good balance.
Well I hope this guide helps you to setup your Session State time limit to time out inactive sessions and give you a little more security on your SharePoint 2007 websites.
Published by TechTips
I am a senior systems engineer and enjoy writing articles about computers, technology and other electronics. View profile
MySpace Codes: How to Hide Anything in Your ProfileFind the MySpace codes needed to hide anything in your MySpace profile here!- Guide to Making Family Photo Christmas CardsNeed ideas for making family photo Christmas cards? This guide details three methods to creating them.
- How to Access Files on Any Computer Without a PasswordThere are times when you may need to access a computer but don't know the password - this can include running an old machine you haven't used in years, using one purchased at...
How to Install OsCommerce to Your Web HostOsCommerce is an open source CMS used specifically for ecommerce store management. With it, you can set up shop online with a fully functionally shopping cart that costs you not...
TechTips - How to Fix the Vista Logon ErrorA brief in-depth guide that details how to fix the Windows Vista error, "The User Profile Service Failed the Logon. User Profile cannot be loaded"
- Microsoft Warns Users of Security Flaws
- How to Setup a Windows XP PC for Dialup to an Avaya (Communication Manager) PBX
- How to Setup a Wireless Printer
- How to Book Indian Railways Tickets Online
- How to Clear Private Data in Mozilla Firefox and Internet Explorer
- How to Cancel a Facebook Account
- LogMeIn Get Remote Access to Your Computer from Any Other Computer - for Free!




