Knowledge Base
Engineer Login
Back to Knowledge Base

Setting Up Self-Service Password Reset (SSPR)

Microsoft 365 SSPR password reset self-service Azure AD By Cade · Updated 03/05/26 07:09 AM
Self-service password reset lets users reset their own Microsoft 365 passwords without calling the helpdesk. To enable it, go to the Azure portal (portal.azure.com) > Azure Active Directory > Password reset. Set "Self service password reset enabled" to All (or Selected for a pilot group). Under Authentication methods, require at least 2 methods and enable Mobile app notification, Email, and Mobile phone. Users register their methods at aka.ms/ssprsetup. Once registered, they can reset passwords at aka.ms/sspr. Enable the "Write back" option if you have hybrid (on-premises AD) users — this requires Azure AD Connect and the password writeback license feature. Monitor SSPR usage from Azure AD > Password reset > Usage & insights to track adoption and reduce helpdesk call volume.