Hi,

 

Our IRT team has come up with a question that I can’t find the answer for.

 

Is’t possible to invalidate all active sessions for a specific user
identity?

 

If one of our users account is hijacked for example y social engineering we
want to remove all active sessions for that user identity in a simple and
controlled way. Is that possible?

 

Pål Axelsson

 

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
Yale CAS mailing list
cas@tp.its.yale.edu
http://tp.its.yale.edu/mailman/listinfo/cas

Reply via email to