How is your session timeout set?

I am not sure if this will help, but if you can, try to change the values
and see what happens.

Here is an example how to change the values.

On IIS6 default timeout is 20 minutes.


> As I mentioned in my original question, I can understand this for the
> request to a session, but I am seeing this happen many times throughout a
> session. A couple examples:
> 1. A page is requested with security credentials, later the same second
> browser requests an image referenced in the page without credentials
> (first). Failure triggers the request to be resent with credentials so
> user sees the site "working".
> 2. Eight minutes later, the user clicks a link referencing another page
> the same site. The request comes in (first) without credentials.
> I looked at:
> INFO: How IIS Authenticates Browser Clients
> "When Internet Explorer has established a connection with the server by
> using an authentication method other than Anonymous, it automatically
> the credentials for every new request during the duration of the session."
> So this shouldn't happen. The clients involved are IE 6.0. What am I
> missing?
> Thanks.