
6o3cz (6o3cz) asked a question.
We are using Angular as the frontend and Spring Boot as the backend with OKTA SAML for authentication. We are facing an issue. If the application is not used for 30 minutes. The application is reauthenticated.
My question is why is it reauthenticated after 30 minutes because the default timeout in OKTA is 2 hours and the NGINX timeout is also set to 2 hours?

Hi @6o3cz (6o3cz) , Thank you for reaching out to the Okta Community!
This question is more appropriate for our dedicated Okta Developer Forum.
My advice would be to reach out devforum.okta.com to take advantage of their expertise.
While we'll do our best to answer all of your questions here, this medium is more inclined towards Okta core products and features (non-developer work).
That being said, please note that Okta does not manage application session lifetimes. What you manage via the Okta policies is the sing-on/authentication policies which include how long a user will stay signed into Okta and if MFA is required. Once the user has been signed in via SAML to the app, it's up to the app to determine and manage the session lifetime in that environment.
If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you.
Hope my answer helps!
--------------------------------
Earn Today: New Okta Community Badges Have Arrived