"Remember me" login functionality

The "Remember me" login functionality is widely used in web sites (Experts exchange included), to automatically sign in the user with the last access userID.
Is a good practice provide this functionality in a web enterprise application, like an ERP or Business intelligence tool?

What is a best practice to implement it? In wich way should be set the cookies?

Thank you
DecisionistiAsked:
Who is Participating?
 
Imtiaz HashamConnect With a Mentor Technical Director / IT ConsultantCommented:
Only if it's internally used because if it's being used externally and someone saves their password on another computer which doesn't have adequate security.
0
 
Imtiaz HashamTechnical Director / IT ConsultantCommented:
It's not a problem if the ERP is used internally only, however, if you have Active Directory for authentication, why don't you ask the ERP to authenticate from the LDAP Login Credentials?

As far as cookies go, the remember me functionality uses cookies to remember you so deleting the cookies will delete the stored information (passwords are stored separately and more securely).
0
 
Kamaraj SubramanianConnect With a Mentor Application Support AnalystCommented:
0
 
DecisionistiAuthor Commented:
Yes it's possibile to use LDAP, but not in this case. The itkamaraj comment is ok, the only remaing part is if is a good practice provide this functionality in a web enterprise application.

Thank you
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.