Have a Policy that will limit time of how long an Emergency Password can be set for or used. Currently you can create for many years. Max age of Emergency Password for example.

Comments