Quantcast
Channel: Azure Active Directory forum
Viewing all articles
Browse latest Browse all 16000

Expire Access token for specific application

$
0
0

Hello all

We are federating onprem with Azure AD. We user ADFS and Azure AD connect. We have added Cisco Anyconnect as an enterprise application in Azure, and we have configured a saml integration between Azure and Anyconnect, and we have configured DUO to work in Azure. Everthing is working, users are able to log in to the Cisco anyconnect client, however we have to always force MFA. What we are noticing is if the users access token is still valid, then they are authenticated and passed straight through without a MFA. If i expire the token for the user by running the below command, then the user gets MFA. Is there a way to configure token lifetime on a per application ? 

 Revoke-AzureADUserAllRefreshToken -ObjectId <GUID>

https://docs.microsoft.com/en-us/azure/active-directory/develop/active-directory-configurable-token-lifetimes


Bulls on Parade


Viewing all articles
Browse latest Browse all 16000

Latest Images

Trending Articles



Latest Images

<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>