
#SYNC IP UNBLOCK PASSWORD#
Require the user to reset password - Requiring the users to reset passwords enables self-recovery without contacting help desk or an administrator. Because the password is temporary, the user is prompted to change the password to something new during the next sign-in. This method requires contacting the affected users because they need to know what the temporary password is. Generate a temporary password - By generating a temporary password, you can immediately bring an identity back into a safe state.
#SYNC IP UNBLOCK MANUAL#
If requiring a password reset using a user risk policy isn't an option, administrators can close all risk detections for a user with a manual password reset.Īdministrators are given two options when resetting a password for their users: Administrators may determine that extra measures are necessary like blocking access from locations or lowering the acceptable risk in their policies. Some detections may not raise risk to the level where a user self-remediation would be required but administrators should still evaluate these detections. Users must have previously registered for Azure AD MFA and SSPR for use when risk is detected. These detections are then considered closed. If you allow users to self-remediate, with Azure AD Multi-Factor Authentication (MFA) and self-service password reset (SSPR) in your risk policies, they can unblock themselves when risk is detected.

Organizations should try to close all risk detections that they're presented in a time period your organization is comfortable with. Organizations can enable automated remediation using their risk policies. After completing your investigation, you need to take action to remediate the risk or unblock users.
