Background:
I have two classes of wireless service,
CORP - requires AD user and AD machine auth - Full access
MOBILE - requires AD user and machine *can not* be in the domain - Internet only
Question is, for MOBILE can I establish a delay between re-authentications? The goal is to make it less attractive to stay permanently attached to this service for our corporate users with handhelds. Or is it possible to force the user to physically reauth and not have their device just keep logging in?