Azure AD user session timeout

Set the Entra ID user session timeout for ISE or ISE-PIC to define how long users stay authenticated, ensuring network access control after timeout via the User Session Timeout page when editing an Entra ID realm.

The Azure AD user session timeout for ISE/ISE-PIC is available on the User Session Timeout page when you edit an Azure AD realm.

The default value 1440 minutes (24 hours). After the timeout is exceeded, the user's session ends; if the user continues to access the network without logging in again, the user is seen by the Cloud-Delivered Firewall Management Center as Unknown (except for Failed Captive Portal Users).