Skip to Content
Getting StartedWhat is AD Unlock?

What is AD Unlock?

AD Unlock is an enterprise platform that enables employees to unlock their Active Directory accounts and reset passwords through WhatsApp, without requiring IT support tickets.

The Problem

Password-related issues account for 40-60% of IT helpdesk tickets. These simple operations consume valuable IT resources and create friction for employees, especially outside business hours.

Common scenarios:

  • Employee locked out of account after vacation
  • Password expired on a weekend
  • New employee can’t remember initial password
  • Mobile user locked out while traveling

The Solution

AD Unlock provides a secure, self-service channel through WhatsApp:

Employee: "My account is locked" AD Unlock: "I found your account. Let me verify your identity." AD Unlock: "I sent a 6-digit code to your email. Please enter it." Employee: "847291" AD Unlock: "Verified! Your account has been unlocked. You can log in now."

Key Benefits

BenefitImpact
Reduce helpdesk tickets40-60% of password tickets automated
24/7 availabilitySelf-service outside business hours
Faster resolutionSeconds instead of minutes/hours
User-friendlyNo apps to install, uses existing WhatsApp
SecureMFA, risk scoring, complete audit trail
Compliance readySOC2-ready audit logs

What AD Unlock Does

  • Account Unlock - Unlock AD accounts locked due to failed login attempts
  • Password Reset - Reset forgotten passwords with secure email delivery
  • Risk Assessment - Evaluate each request for suspicious activity
  • Policy Enforcement - Apply rules based on user groups, time, location
  • Audit Logging - Complete trail of all actions for compliance

What AD Unlock Does NOT Do

  • Does not access or read existing passwords
  • Does not send passwords via WhatsApp (email only)
  • Does not execute arbitrary commands
  • Does not bypass your security policies
  • Does not require changes to AD schema

How It’s Different

FeatureTraditional Self-ServiceAD Unlock
ChannelWeb portalWhatsApp (already installed)
AvailabilityDuring office hours24/7
User trainingRequiredNone (natural language)
MFAUsually separate systemBuilt-in (email OTP)
Risk scoringRarelyEvery request
DeploymentOn-premisesCloud + lightweight connector

Architecture at a Glance

┌─────────────────────────────────────────────────────────────┐ │ YOUR NETWORK │ │ ┌─────────────┐ ┌───────────────────┐ │ │ │ Active │◄─── LDAPS ───────►│ AD Connector │ │ │ │ Directory │ │ (your server) │ │ │ └─────────────┘ └─────────┬─────────┘ │ │ │ Outbound │ │ ▼ WSS │ └───────────────────────────────────────────────┼─────────────┘ ┌───────────────────────────────────────────────┼─────────────┐ │ AD UNLOCK CLOUD ▼ │ │ ┌─────────────┐ ┌─────────────┐ ┌───────────────┐ │ │ │ WhatsApp │───►│ API │◄───│ Gateway │ │ │ └─────────────┘ └─────────────┘ └───────────────┘ │ └─────────────────────────────────────────────────────────────┘

Next Steps

Last updated on