HELP FILE

LastPass Admin Management of Master Passwords

LastPass Admin Management of Master Passwords

You can view and manage your users' master passwords from the Admin Console. For additional security measures, you can also choose to enforce various policies for your users to adhere to when managing their master password.

If you have detected a need for a user to change their password immediately, it is recommended that you first require a password change, then destroy their active session. This will log them out of their existing session, then force them to change their password upon their next login.

Master Password Change Info

View the change log

  1. Log in and access the Admin Console at https://lastpass.com/company/#!/dashboard.
  2. Use the menu in the left navigation to go to Advanced OptionsBusiness OptionsMaster Passwords.

Here you can view the list of users that last changed their master password, and when the last change occurred.

Require a master password change

If you need to force users to change their password upon their next login, do the following:

  1. Log in and access the Admin Console at https://lastpass.com/company/#!/dashboard.
  2. Use the menu in the left navigation to go to Advanced OptionsBusiness OptionsMaster Passwords.
  3. Check the box in the "Action" column for a single user, or check the first "Action" box to select all users in the list.
  4. Click Require Password Change.
  5. Click OK to confirm.

Your selected user(s) now require a master password change upon their next login.

Destroy all sessions

If you need to force users to log out of their existing LastPass Business session immediately, do the following:

  1. Log in and access the Admin Console at https://lastpass.com/company/#!/dashboard.
  2. Use the menu in the left navigation to go to Advanced OptionsBusiness OptionsMaster Passwords.
  3. Check the box in the "Action" column for a single user, or check the first "Action" box to select all users in the list.
  4. Click Destroy All Sessions.
  5. Click OK to confirm.

All active sessions for the user have been terminated.