Forgotten passwords and locked accounts can interrupt work and create routine recovery requests. Separate sign-ins for connected applications and passwords that fall out of sync add further friction for users.
ADSelfService Plus lets users reset passwords, change passwords and unlock Active Directory, Entra ID and cloud accounts through self-service. It combines these functions with MFA, SSO and real-time password synchronisation, so users can restore access and use connected applications with fewer separate sign-ins.
The product is suited to workforce identity tasks such as account recovery, password changes and account unlocks across Active Directory, Entra ID and cloud accounts. It also applies MFA to machine access, enterprise applications, VPNs, OWA and RDP.
For connected enterprise applications, it provides IdP- and SP-initiated SSO for SAML-, OAuth- and OIDC-based applications and synchronises password resets and changes. Password expiry notifications and fine-grained password policies support the ongoing management of password-based access.
ADSelfService Plus applies to Active Directory, Entra ID and cloud accounts, hybrid enterprise applications, and Windows, macOS and Linux machines. Login-screen password reset, conditional access and cached credential updates are Professional edition features.
Users can restore account access through password reset or account unlock without routine helpdesk involvement.
SSO gives users access to connected enterprise applications with fewer separate sign-ins.
Real-time synchronisation keeps password changes aligned across connected applications and machines.
MFA adds identity verification for access to supported endpoints, applications and remote access services.
Scheduled notifications remind users about approaching password expiry by email, SMS or push notification.
Use self-service password reset and account unlock for Active Directory, Entra ID and cloud accounts.
Apply MFA to endpoints, VPNs, OWA and RDP alongside enterprise applications.
Provide SSO for enterprise applications that use SAML, OAuth or OIDC.
Synchronise user password resets and changes across connected applications and machines.
Notify users of scheduled password expiry dates through email, SMS and push notification.