stay signed in Azure AD

Gopi Ponnusamy 46 Reputation points Microsoft Employee
2021-08-26T04:39:06.357+00:00

Hi Guys,

I have requirement to enabled "stay signed in" in Azure AD banner.

If i enabled, will disabled user (-1 day ) able to connect the azure cloud application?

can anyone clarify?

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} vote

Accepted answer
  1. AmanpreetSingh-MSFT 56,871 Reputation points Moderator
    2021-08-26T05:44:21.72+00:00

    Hi @Gopi Ponnusamy • Thank you for reaching out.

    To enable Keep Me Signed In (KMSI) feature, you need to:

    • Sign in to the Azure portal using a Global administrator account for the directory.
    • Navigate to Azure Active Directory > Company branding > Configure > Advanced settings section > Show option to remain signed in setting > YES

    Once KMSI is enabled, and user chooses to Stay Signed In, persistent cookie is issued to the user. This cookie is stored on the disk and does not get expired when browser session is closed. However, the persistent cookies are invalidated when the user account is disabled or user's password is changed.

    So, to answer your question, disabled user (-1 day ) will NOT be able to connect the azure cloud application due to above reason.

    -----------------------------------------------------------------------------------------------------------

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.