Objective
This article details how to restrict users from logging in to ADSelfService Plus from multiple devices or browsers simultaneously. Enabling this restriction strengthens security and helps prevent account misuse or credential compromise within the organization.
Prerequisite
Steps to prevent concurrent logins
Log in to the ADSelfService Plus admin console.
Navigate to Admin > Product Settings > Connection > General Settings.
Check the box next to the setting labeled Deny Concurrent Logins.
Note: If Session Expiry Time is set to Never, this option will be disabled. To enable it, adjust the session expiry time from Never to a specific duration. This ensures sessions can be managed and terminated as required. Once enabled, users who try to start a new session while another is active will receive an error message both on the browser and mobile app.
Resetting a user's active session status
If a user closes their browser or app without logging off and cannot log in (due to the previous session not expiring yet), the admin can manually terminate their session.
In the same General Settings tab, click Click here beneath the Deny Concurrent Logins setting.
In the pop-up that appears, click Confirm to close all active connections for the user. The user can now log in again without needing to wait for the idle session to expire.
By following these steps, you can efficiently eliminate the security risks posed by concurrent logins and ensure accountability for all user actions within ADSelfService Plus.
How to reach support
If the issue persists, contact our support team here.