Skip to main content
Drupal is a registered trademark of Dries Buytaert
Release: Views Bootstrap 5.5.4 — Minor update available for module views_bootstrap (5.5.4). Release: Rightup theme 1.0.3 — Minor update available for theme vartheme_bs5_rightup (1.0.3). Release: CommentOn 1.0.6 — Minor update available for module commenton (1.0.6). Release: ChatGPT Ads 1.0.3 — Minor update available for module chatgpt_ads (1.0.3). Release: Opensolr Search 5.1.3 — Minor update available for module opensolr_search (5.1.3). Release: ServiceM8 Webform Integration 1.2.1 — Minor update available for module servicem8_webform (1.2.1). Release: PostfixAdmin 1.0.0 — Initial release available for module postfix_admin (1.0.0)! Release: ip_analyser 1.0.3 — Minor update available for module ip_analyser (1.0.3). Module Revived: Swagger-PHP OpenAPI 3 documentation generator 1.0.0 — Module swagger_php updated after 10 months of inactivity (1.0.0). Security Coverage: Microsoft Azure AI — Module ai_provider_azure now has official Drupal security advisory coverage.
Session Invalidator

The "Session Invalidator" module enhances Drupal's security by invalidating all active sessions for a user when their password is changed. This forces a logout and requires re-authentication, ensuring that any unauthorized access is swiftly revoked following a password change.

Features

  • Automatically invalidates all sessions upon password change.
  • Forces logout and re-authentication to enhance security.
  • Integrates seamlessly with Drupal's user and session management systems.

Post-Installation

After installing the "Session Invalidator" module, it functions immediately without any additional configuration. It hooks into user password change events and performs session invalidation and user logout operations automatically.

Additional Requirements

This module requires no external libraries or modules beyond Drupal core.

Recommended Modules/Libraries

  • Login Security: Enhances the security options in the login operation.
  • Password Policy: Allows administrators to define password policies.

Similar Projects

While "Automated Logout" provides a site-wide timeout based on user role, "Session Invalidator" specifically targets session invalidation upon password changes, enhancing security measures specifically during credential updates.

Supporting this Module

Community contributions for bug fixes, improvements, and documentation are welcomed. Please visit the module's issue queue on Drupal.org for current efforts and discussions.

Community Documentation

Find more detailed documentation and use cases on the Drupal community documentation pages. More information will be provided following the module's publication.

Depends on

Dependencies of the latest stable release

No dependencies recorded for this project.

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
1
Tracked since
Apr 2024
Latest release
2 years ago
Releases (12 mo)
0
Maintenance
Dormant

Releases

Version Type Core Release date
1.0.0 Stable Apr 3, 2024