End users can unlock their Okta accounts without contacting an administrator if the administrator enables the Self-Service Account Unlock feature. This guide outlines the end-user experience for unlocking an account using the email recovery option and security questions.
- Okta Identity Engine (OIE)
- Security Question
- Self-Service
How do end users configure their accounts for self-service?
During the initial sign-on, Okta prompts the user to configure security methods based on the unlock account methods the administrator enables.
How do end users unlock their accounts using self-service?
NOTE: If the end-user is unable to unlock their account using this method, they should contact their administrator. This article does not describe the self-service account unlock settings for administrators. It provides end-user guidance only.
End users initiate the account unlock process on the sign-in page by selecting Unlock account? and verifying with the required security method to regain access.
- Navigate to the sign-in page and select Unlock account?.
- Enter the username of the user account to be unlocked and select Next.
- Verify the security method to proceed with the account unlock. This example uses Email.
- Select Send me an email.
- Select the Unlock Account button in the email.
- Complete the required MFA verification.
NOTE: If the user is unable to complete the MFA verification, they should contact their administrator.
- Sign in again after Okta unlocks the account.
Verify the success message displayed by Okta, confirming that the account is unlocked and ready for access.
