
Via Zoho Mail Apps for iOS and Android (Apps created and published by Zoho):

Apart from that, during password reset a user can revoke an application-specific password by revoking auth tokens. You can revoke an application-specific password from the TFA settings to remove access for a particular application.
AUTHY DESKTOP WITHOUT PASSWORD UPDATE
Given that application-specific passwords never expire, you will not be required to update the password in your application, even if your web password expires. Step 3: Upon successful validation, you will be able to access your account.Step 2: During the configuration of the Zoho account in the application, provide the 12 digits Application-specific Password, instead of the regular password.Step 1: The user generates a unique Application-specific Password for each external application used.If correct, access to the account is granted.Īccess via POP/ IMAP or Active Sync protocols: Step 3: Provide the one-time password (OTP) in the browser.(via SMS/Voice call or QR Code as per TFA configuration) Step 2: If the entered password is correct, the user will receive a unique and random one-time password.Step 1: User logs in with their Username and Password.How Two Factor Authentication works: Access via a web browser: Generating Application-Specific Passwords.Steps to Enable/ Disable TFA for Users by Admin.

