Revoke-MgUserSignInSession
CautionRevoke sign-ins
Revoke-MgUserSignInSession -UserId <upn>
Invalidates all sessions for a (possibly compromised) account, forcing re-auth.
Examples
Revoke-MgUserSignInSession -UserId [email protected]Revoke all tokens
Syntax
Revoke-MgUserSignInSession -UserId <upn>
Before you run it
The user must sign in again immediately.
Used when you see
New phone broke MFA sign-in
2
See the whole flow →Clean up stale methods and guide re-registrationVerify identity rigorously — MFA-reset requests are a favorite attack.
Related commands
- Get-MgUserInspect Entra users
The same reference, with no signal at all
Every command and flow from this site, held on your device and searchable with no connection. Free to install, no ads.
Get it free on the App Store