This article explains why one or more users in Password reset status can still log in.
- Password Reset
- Self Service
- Okta Classic Engine
It is expected behavior for a user in Password Reset status to still be able to log on using their old password.
-
This is to allow a user who requests a password reset to log in if the user subsequently remembers their password.
-
The Password Reset status in the Okta Admin console will not be cleared until the user performs the password reset operation.
