AdminJason Pan
(Admin, Box)
My feedback
3 results found
-
13 votes
AdminJason Pan (Admin, Box) supported this idea ·
-
3 votes
Not planned for now but will keep on our radar.
AdminJason Pan (Admin, Box) supported this idea ·
-
16 votes
A closed beta of this API is available. Please reach out to your Box contact to discuss more. This will GA in Q4 of this year.
An error occurred while saving the comment
Admins would like to have the ability to force a log out from all devices and sessions. This could be for:
- User termination
- User's SSO credentials compromised (attacker could grant access to a third party app, which keeps a session alive even if sso credentials are reset)
On an API perspective, there could be an endpoint which destroys all tokens for a user, and it would require "manage users" from an admin perspective.