Sign in to Admin Console
Go to admin.google.com and sign in using your Admin account.
Troubleshooting steps for Google Workspace Admin Console — Authentication issues
If a user (for example msrsandeep@youdomain.com) sees a "Verify it’s you" login challenge, follow the steps below in the Admin Console to remove outdated recovery/alternate emails and temporarily disable the login challenge.
Go to admin.google.com and sign in using your Admin account.
Navigate to Users, then find and click the user (e.g., msr sandeep / msrsandeep@youdomain.com).
In User details → User information, remove any alternate/recovery/forwarding email addresses (for example, old addresses starting with @tab...).
Click Save after removing them.
Inside the same user profile, open the Security tab. Scroll to Login Challenge and choose "Turn off login challenge for 10 minutes". Confirm and save changes.
This button starts an on-page countdown to help you track the 10-minute window — you still must perform UI actions in the Admin Console.
Within the 10-minute window, go to the browser where the user is signing in (e.g., gmail.com) and try to sign in again. The user should be able to sign in without needing a verification code.
After successful login, consider re-enabling the login challenge for the user: Admin Console → Security tab → Turn on login challenge.
If the verification email continues to go to an unknown address (for example, an address starting with @tab...), an old recovery email is still present.
Make sure to remove any outdated recovery emails as described in Step 3.