I have a session timeout set in the Authentication Management page for myself (the administrator) but it is not being enforced. I’m using SSO for authentication. Are there any known issues with this setting for Graylog 2.5.2?

Graylog has a bug tracker, if there is a known issue, it should there.
Please check

if you are using the SSO plugin and a proxy that is sending your authentification header - just having the page open (and the counter refreshed) will refresh the session and keep the session alive. That was a bug that is closed in later versions.

Thanks for that information. Do you know which version it was fixed in or do you have a reference to the bug report?

Sorry I do not know exactly. That is just in the back of my head:

is the changelog you might find that direct

