Access ends immediately. Deactivating a user — from the console or via SCIM from your directory — severs their device keys and refresh-token families at once; access is not left to wait out a token's lifetime. Every such action lands on the audit trail.
Was this article helpful?
That’s Great!
Thank you for your feedback
Sorry! We couldn't be helpful
Thank you for your feedback
Feedback sent
We appreciate your effort and will try to fix the article