FusionAuth
    • Home
    • Categories
    • Recent
    • Popular
    • Pricing
    • Contact us
    • Docs
    • Login

    Refresh token revoked on logging in on multiple devices

    Scheduled Pinned Locked Moved Unsolved
    Q&A
    3
    6
    3.9k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • V
      vindhyahegde2114
      last edited by

      Refresh token in the first device logged in, is getting revoked when the same user is logged in on some other device/browser.

      Why is this happening? I see no documentation regarding this behaviour of fusionauth anywhere.
      Where can I change this configuration?

      1 Reply Last reply Reply Quote 0
      • V
        vindhyahegde2114
        last edited by

        Update: This behaviour is observed when the user logs in on same application in multiple devices.

        danD 1 Reply Last reply Reply Quote 0
        • A
          amin.jabari242
          last edited by

          I'm currently experiencing the exact same thing.

          1 Reply Last reply Reply Quote 0
          • A
            amin.jabari242
            last edited by

            I have read your article, it is very informative and helpful for me.

            1 Reply Last reply Reply Quote 0
            • danD
              dan @vindhyahegde2114
              last edited by

              @vindhyahegde2114

              Hmmm. Haven't run into this before.

              The refresh token revocation behavior is documented here: https://fusionauth.io/docs/v1/tech/core-concepts/applications#jwt and here: https://fusionauth.io/docs/v1/tech/core-concepts/tenants#jwt

              Can you provide a few more details?

              • how are you logging the user in
              • what are your refresh token settings for this application
              • What is the
              • what version of FusionAuth are you running

              Thanks,
              Dan

              --
              FusionAuth - Auth for devs, built by devs.
              https://fusionauth.io

              V 1 Reply Last reply Reply Quote 0
              • V
                vindhyahegde2114 @dan
                last edited by

                @dan

                • User logs in through authorization code grant flow

                • Here goes the refresh token settings for the application:

                e34e22da-b37b-41e6-8816-88b43a8cbddd-image.png

                • FusionAuth version being used is 1.36.6

                Thanks,
                Vindhya

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post