> For the complete documentation index, see [llms.txt](https://ztrust.gitbook.io/ztrust-documentation/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://ztrust.gitbook.io/ztrust-documentation/user-manual-ztrust-v1.0/admin-manual/how-to-setup-session-invalidator-feature.md).

# How to setup Session Invalidator feature

This feature invalidates all prior sessions once the user logs in from a new device or location, ensuring that only the current session remains active. It also enhances the security as well.

<br>

Follow the below steps to set up Session Invalidator feature

1. Login to ZTrust Admin Console.
2. Click on Authentication.

![](https://lh7-us.googleusercontent.com/docsz/AD_4nXe7iR3cNCDFDj2mO9uGm-gAdTejyPLXx1JNsQdzYatglTtRt7Ma-vctz09BC1iOaq-w2QGPx5On1C4tOLVe5TdH_-S2VisCaz5q2nqT_RD7yKkVqjrv9uiWORBFNzCUDjd7We1b2UYNMdaej4JuE8bmclVCj2mHUY-R_FyPBA9BLxJWxgFcRJ8?key=trHzRgGTD4ANqZgrt456QA)

3. Click on Copy and create a copy of Browser Flow.

<figure><img src="https://lh7-us.googleusercontent.com/docsz/AD_4nXc7gHTYdvrwdqs5L50RaWgGifwdO7gsmxGsfWWOKdo1_HGCSRfiBJSBRB4GYVV8c1c8Bx6o_wEzyouvaYGbBnnu2wZizgaR6r-SqcU-uvK0VRrytHhZKbsBVO6FCCajUVOFH72t8nu3slDfEf0rbLQ99l7ZeSFc-VvbnIVa3mpXjxBuQtVWlA?key=trHzRgGTD4ANqZgrt456QA" alt=""><figcaption></figcaption></figure>

4. Provide any name. For example - Session Invalidation and click on OK.

<figure><img src="https://lh7-us.googleusercontent.com/docsz/AD_4nXch67n-RBmrdmnxAfD6DqlN1CAQ2xXYHoze7ig9N4SZTdB_YdDDHg9JCPdPrdXuDcPBykAGjToLPOGvQFWRuJ9qLFq7QGrI89PE2A3zTfq-QD5Ag97IW8InlwzWLLqKdUqRitweGTR5RMNIa5WyJXX6ZdFfC31lSWnk4jBB9kk4JUtFTLlNvD4?key=trHzRgGTD4ANqZgrt456QA" alt=""><figcaption></figcaption></figure>

5. Delete all except the Session Invalidation Forms.

<figure><img src="https://lh7-us.googleusercontent.com/docsz/AD_4nXdaQctBSgJaDJEWBXB-vbhy2hKkHyxDEcrqU2IzhZhIfEg1YBtdqYK_mZJ3CPKqFZPSCElEgvlgQMbl5F0XA_dtFFJRXzZVz_HvQ4oqhYDwrR6oB_BivEqP-2oCn2bWuJq2PXnrFnQDVbuvQyD3VScsM7fFap31BcTEy5RdzA0sRq8gqPdP7A?key=trHzRgGTD4ANqZgrt456QA" alt=""><figcaption></figcaption></figure>

6. Click on Add execution.

<figure><img src="https://lh7-us.googleusercontent.com/docsz/AD_4nXeDApTDoNjTsEYY5yggbBcRiWewuZ2MrZtLOJYyjMvJG9h14nv6yXc7OgOQ3C5se6m7UbBn0dG_QqTO1k2NEXDnvkhnRydnl-sCtI2TzNnqsosENTb8tM090d8OqGjht38RYlnu1FJhyAQdfY-GVXFGB-SIMZCCOwBV9hKuhi0OexH1ojnnKQ?key=trHzRgGTD4ANqZgrt456QA" alt=""><figcaption></figcaption></figure>

7. Click on dropdown for Provider and select - Advanced Session Invalidator.

<figure><img src="https://lh7-us.googleusercontent.com/docsz/AD_4nXfhcPVkxSKQVidPYCTFkCuOq9hHgayfSFGLDwp8B02dw8eX0vgab7C0r2WX8oyeoqRA6MIWEZLA-UG8JPtFObKZEwe89Kd8Bd1wZevIJaaSsQnZiN6EcRvzaWAm08xlEfQ1JVLgAo-IfS7rmHxgNjwRu1v656y0e9DylSz7dzMq-FG3f2nT3qc?key=trHzRgGTD4ANqZgrt456QA" alt=""><figcaption></figcaption></figure>

<table><thead><tr><th width="143">Field Name</th><th width="190">Mandatory (Yes/No)</th><th width="142">Field Type</th><th>Description</th></tr></thead><tbody><tr><td>Provider</td><td>Yes</td><td>Dropdown</td><td>Enter the configuration that is needed.</td></tr></tbody></table>

8. Click on Save.
9. For Advanced Session Invalidator, make the requirement as Required.

<figure><img src="https://lh7-us.googleusercontent.com/docsz/AD_4nXfZ72K431O7_tzM7Rye025XFU09_qkoLvU1F-vxAgrDRjjtL0rH-3cWje7G3P5QicWmTKxvRx7bDlWZxG6tGfIGa0rNm0jGplSLVRBEvJqIJ3aqAZSZnk2QRRwgxZ3LZE6c3jlMf_zBEl-MXw6QjtVYQSiUcc2R2ccvELAk0WPWoEbrUf4ZKdI?key=trHzRgGTD4ANqZgrt456QA" alt=""><figcaption></figcaption></figure>

10. For Advanced Session Invalidator, click on Actions and then Config.

<figure><img src="https://lh7-us.googleusercontent.com/docsz/AD_4nXeGkMAt7MDgJckOz1sEQ53j5g9exwujBvy5WJ6Y6CD7q-HBcaAGXgntU84gJzylmwNJUoociyZEeu0CsyFZqIwYLixhJngUyAwGzjPNxi6rjeHPZ45yFOOhLotqcthfD6V-lPmEfSa2DzVE4nHnKGqX6ymtDGmj8HlkGqfmPwsrdmSmLyZ-iVA?key=trHzRgGTD4ANqZgrt456QA" alt=""><figcaption></figcaption></figure>

11. Mention the MAX Allowed session per user as 1. Enter the other details as required.

<figure><img src="https://lh7-us.googleusercontent.com/docsz/AD_4nXfCBUz9smXKyhotMbwCk8MwEPzZCrGcfBM5Vg-88Yt2GbJI8RN8eX6Hs3TpsriCxdfCYnszUtry_WCCPOqNqfCAAtPYJPeNstiaEMVewtIj8_GhOAc31CTkokcAAXOWrtDFbJ8pUzY5iYVpdEDKa_nU1SIW2mdrJs3CenNNp2oNh0WkndEBFaA?key=trHzRgGTD4ANqZgrt456QA" alt=""><figcaption></figcaption></figure>

12. Click on Save.
13. Click on Bindings.

<figure><img src="https://lh7-us.googleusercontent.com/docsz/AD_4nXcw9S-cwxN6OIclr3VT8KAizFfO1KRsMrfTeLsLdTXtHbosMVRIZmi_iMVmI6uERr3clF5nlbJRSEmiuVIoNNG-Vqx-Espd6WfJymhG3pIlpq8IYE8BUlOZFDnq6mFZ-x4ZYcLDxL16llI_7mLORQsSMgfvoODa-fxT2O9O-AlriOUEmghNxA?key=trHzRgGTD4ANqZgrt456QA" alt=""><figcaption></figcaption></figure>

<table><thead><tr><th width="163">Field Name</th><th width="188">Mandatory (Yes/No)</th><th width="109">Field Type</th><th>Description</th></tr></thead><tbody><tr><td>Browser Flow</td><td>Yes</td><td>Dropdown</td><td>Select the process flow as required during Logging in</td></tr><tr><td>Registration Flow</td><td>Yes</td><td>Dropdown</td><td>Select the process flow as required during user registration</td></tr><tr><td>Direct Grant Flow</td><td>Yes</td><td>Dropdown</td><td>Select the process flow as required during</td></tr><tr><td>Reset Credentials</td><td>Yes</td><td>Dropdown</td><td>Select the flow as required during the credentials reset process</td></tr><tr><td>Client Authentication</td><td>Yes</td><td>Dropdown</td><td>Select the flow which you want to use for the Client Authentication flow</td></tr></tbody></table>

14. Click on Browser Flow and select Session Invalidation from the dropdown.

<figure><img src="https://lh7-us.googleusercontent.com/docsz/AD_4nXejJ3cypiEn5RGd38II5MhOXhRFf3QfrIwedb3KLhjU4UJZrZGaBjpMuv66XqbIe0MB3kXL2rlYh5jZnvQB-dWWgjFcWQvEzEggMEQ_FfdqprkicPpLrVIp_7tqiYW2kH0eaXr5bRlW2uFYDC85mlWqaaClCZoeIA-hyBm4S_favhIj7iV0Gkc?key=trHzRgGTD4ANqZgrt456QA" alt=""><figcaption></figcaption></figure>

15. Click on Save.

Session Invalidation feature is configured now.

<br>
