Deployment Guide
Self-Recovery, One-time Password
This procedure describes how to use the One-time Password (OTP) feature to recover access to the computer if, for example, the
Windows password is expired or forgotten or the maximum allowed logon attempts is exceeded. The One-time Password (OTP) option is
available only if the user has enrolled a mobile device and only if OTP was not last used to log on to Windows.
NOTE:
The One-time Password feature requires that TPM is present, enabled, and owned. OTP can be used either for
Windows authentication or for recovery, but not both. The administrator can set policy to allow OTP for either recovery
or authentication or can disable the feature.
To use OTP to recover access to the computer:
1.
At the Windows logon screen, select the OTP icon .
2. On the mobile device, open the Security Tools Mobile app and enter the password.
3. Select the computer you want to access.
If the computer name does not display on the mobile device, one of these conditions may exist:
• The mobile device is not enrolled, or paired, with the computer you are trying to access.
40
Recovery