> For the complete documentation index, see [llms.txt](https://help.glpi-project.org/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://help.glpi-project.org/glpi-12/setup/security.md).

# Security

This tab contains security settings regarding password policy, two-factor authentication, and active sessions.

***

## Password security policy

* Force passwords to comply with security policy

<figure><img src="https://content.gitbook.com/content/uys4bnfAs7Oe2yWUUh3p/blobs/bNO6YLtVEDJKWHcW6J4N/password_security_policy.png" alt=""><figcaption></figcaption></figure>

***

### Security policy configuration

The security policy is only enforced if this is enabled

* Password minimum length
* Password need digit
* Password need lowercase character
* Password need uppercase character
* Password need symbol

***

### Password expiration policy

The following options can be configured as part of the password security policy:

* Password expiration delay (in days)
* Password expiration notice time (in days)
* Delay before account deactivation (in days)
* Validity period of the password initialization token
* Prevent users from reusing previous passwords

***

## Two-factor authentication (2FA)

* 2FA Suffix : This will be added in the issuer name for authenticator app
* Enforce 2FA

<figure><img src="https://304570660-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fuys4bnfAs7Oe2yWUUh3p%2Fuploads%2Fgit-blob-8124023af41f914fd73adf3064f7fad722ee54a9%2Fsecurity-2fa.png?alt=media" alt=""><figcaption><p>View 2FA</p></figcaption></figure>

***

## Sessions

This tab lists all active user sessions and allows you to revoke them. Available informations:

* **Type**: type of connexion
* **User**: displays first and last name
* **Details**: browser version, OS type, etc.
* **IP address**
* **Login**: user login time
* **Last activity**: time of last detected activity
* **Status**: connection status
* **Actions**: revoke a session

<figure><img src="https://304570660-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fuys4bnfAs7Oe2yWUUh3p%2Fuploads%2Fgit-blob-9ecce9b6d49a33fa4c09d571d31ac321a5594cb8%2Fsecutiry-sessions.png?alt=media" alt=""><figcaption><p>Details of sessions</p></figcaption></figure>

### Revoke a session

Revoking a session closes it. The user will need to log in again after this action.

<figure><img src="https://304570660-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fuys4bnfAs7Oe2yWUUh3p%2Fuploads%2Fgit-blob-73d76b1ce7d3f74a110093358325871e52eee6fe%2Fsecutiry-revok-session.png?alt=media" alt=""><figcaption><p>Revok a session</p></figcaption></figure>

### Revoke all sessions

You can also revoke all active sessions

<figure><img src="https://304570660-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fuys4bnfAs7Oe2yWUUh3p%2Fuploads%2Fgit-blob-99b288b187235609910fc2dda0f47049078325c4%2Fsecutiry-revok-all-sessions.png?alt=media" alt=""><figcaption><p>Revoke all active sessions</p></figcaption></figure>


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://help.glpi-project.org/glpi-12/setup/security.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
