Restricting logons to a single IP address can prevent attacks that take advantage of persistent session information.
By default, user sessions are maintained across IP addresses. Maintaining user sessions enables users to change locations without having to log on repeatedly.
If your network requires more security, you can restrict user sessions to a single IP address. Doing so forces users to resubmit their credentials every time their IP address changes, such as when they take their laptop to a different location.
For details about product features, usage, and best practices, click ? or Help.
Select Menu → Configuration → Server Settings, select User Session from the Settings Categories, then click Edit.
Select Restrict session to a single IP address.
Click Save.
Any time a user changes IP addresses, they must re-enter their credentials to access the ePO - On-prem console.