Hello,
Im an ADMIN in the bitbucket of our company, is there a way for me to reset the OTP of a user if the user is not receiving any OTP on his device
Hi @klim ,
It depends on whether you are on Bitbucket Cloud or Bitbucket Data Center, and on Cloud a Bitbucket workspace admin cannot reset it. Which one are you on?
Bitbucket Cloud
Login goes through the user's Atlassian account, so the reset is done there, not in Bitbucket.
If the user gets codes from an authenticator app and they are rejected, also check that the clock on the phone is correct.
Bitbucket Data Center (built-in two-step verification)
The second step is a code from an authenticator app, so nothing is sent to the device. The user can log in with the recovery key from setup. If that is lost too, a system admin can unenroll the user over REST:
DELETE <base-url>/rest/tsv/latest/totp/unenroll/user/{username} Body: { "totpCode": "<your own current TOTP code>" }
The system admin must have two-step verification set up themselves, and the call needs a valid admin session cookie. A 204 response means the user was unenrolled and can enroll again.
If your OTP comes from a third-party 2FA app instead, the reset is in that app's admin settings.
It looks like you're new here. Sign in or register to get started.