# Client Session Idle vs SSO Session Idle

**URL:** <https://forum.keycloak.org/t/client-session-idle-vs-sso-session-idle/6507>\
**Category:** Configuring the server\
**Tags:** oidc\
**Created:** [December 21, 2020, 11:26pm UTC](https://forum.keycloak.org/t/client-session-idle-vs-sso-session-idle/6507 "2020-12-21T23:26:33Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![eicki](https://yyz2.discourse-cdn.com/free1/user_avatar/forum.keycloak.org/eicki/32/1860_2.png) [@eicki](https://forum.keycloak.org/u/eicki)\
**Post date:** [December 21, 2020, 11:26pm UTC](https://forum.keycloak.org/t/client-session-idle-vs-sso-session-idle/6507/1 "2020-12-21T23:26:33Z")

</div>

I‘ve read the documentation about Client Session Idle and SSO Session Idle timeouts, but can someone give me real world example why I should configure Client Session Idle less (or even larger?) than SSO Session Idle please.  
Maybe I haven’t fully understood the difference between those two config options.

---

<div class="post-metadata">

**Author:** ![imog](https://avatars.discourse-cdn.com/v4/letter/i/54ee81/32.png) [@imog](https://forum.keycloak.org/u/imog)\
**Post date:** [February 6, 2021, 9:57am UTC](https://forum.keycloak.org/t/client-session-idle-vs-sso-session-idle/6507/2 "2021-02-06T09:57:15Z")

</div>

As i understand, the “Client Session Idle Timout” is about the connection from client-applications like a third party application (e.g. a CMS system like GRAV oder DokuWiki). I tells how long a token is valid given for a client until he needs to fetch a new one.

And “SSO Session Idle” is about the user who uses the client to access an application.
