If a recipient lacks a work, school or social account, Microsoft Purview Message Encryption can email them a code to open the encrypted message portal instead. Admins switch this off through Set-OMEConfiguration's -OTPEnabled parameter.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains One-time passcode in context, with comparison tables and the common traps.
Terms in this definition
- Recipient
The Unity Catalog object for an individual or organisation that is given access to OpenSharing shares. Properties set on it can be checked with
CURRENT_RECIPIENT()to filter what that party sees. - Microsoft Purview Message Encryption
Built on Azure Rights Management, it encrypts mail sent to people both within and beyond the organisation. Senders can pick Do Not Forward or Encrypt-Only, organisations can brand messages, and supported Outlook clients show them in-line; legacy OME, now deprecated, gave way to it.
- Encrypted message portal
A website for reading and replying to protected email when it cannot be opened inline, for example by outside recipients of branded messages, who sign in with a social account or one-time passcode. Revoking or expiring Advanced Message Encryption mail only works for messages opened there.
- SWITCH
Checks one expression against several candidate values, returning whichever result pairs with the match (or a fallback otherwise). Writing SWITCH ( TRUE (), ... ) avoids nested IF chains: whichever condition is first true wins.
- Set-OMEConfiguration
Changes the branding template for Microsoft Purview Message Encryption from Exchange Online PowerShell: its logo and wording, whether recipients can sign in with a social ID, and one-time passcode use.
- State
A parameter in OAuth that carries custom data through the authorisation flow and back, as with the "Support state parameter" option in APIM.