Skip to Main Content

APEX

Announcement

For appeals, questions and feedback about Oracle Forums, please email oracle-forums-moderators_us@oracle.com. Technical questions should be asked in the appropriate category. Thank you!

Allow only one active session per user at any given time by terminating the existing session ?

jmarcFeb 20 2020 — edited Feb 20 2020

Hello,

we received an audit security risk

"Applications which allows more than one active session at a time for a single user account allows attacker to use stolen credentials or session of user without  alerting the legitimate user."

Is  it possible to do it in APEX ?

regards

jm

Comments
Post Details
Added on Feb 20 2020
5 comments
1,176 views