Web sessions
The Users Web Sessions page lists every active sign-in session in your organization — who is signed in, from which IP address, and since when. Use it to review current activity and to terminate sessions that should not be open, for example after offboarding a user or when you suspect a compromised account.
To open it, go to Administration › User Authentication › Users Web Sessions.
Reviewing active sessions
Each row shows the User, their Login, the IP address the session was started from, and the Session Start Time. You can search by user, login, or IP address, and click View on a row for the session's details. Sessions end when the user signs out, and expire automatically after a period of inactivity.
The same information is available per user on the Security tab of the user's profile (see User accounts), and each user can see their own sessions in My Profile › Security (Account security).
Terminating sessions
Select one or more sessions and click Terminate. The affected users are signed out immediately and must sign in again.
Terminating a session does not disable the account — the user can sign back in with valid credentials. If the account itself is compromised or should no longer have access:
- Terminate the user's sessions here.
- Reset the user's password or disable their web portal access — see User accounts.
Related pages
- User accounts — disable access or reset a password.
- Password policy — sign-in rules for your organization.
- API usage — request statistics for the same accounts.