By Natalie Brooks, hospitality access-support manager with 13 years of experience resolving hotel Network ID, authentication, and role-assignment cases
Last reviewed: July 27, 2026
IHG Merlin is an internal gateway used by authorized IHG hotel colleagues, corporate employees, contractors, vendors, and sponsored users. The current sign-on flow includes standard login plus a Forgot password or username? route, while separate IHG pages cover Network Account registration and recovery.
This independent guide is not affiliated with IHG Hotels & Resorts. Account requests, recovery, re-enablement, and application permissions must be handled through IHG systems or the authorized workplace administrator responsible for the user.
What IHG Merlin actually controls
Merlin gives an authorized user a central route into workplace resources. It does not turn every IHG application into one shared account with identical permissions.
IHG materials describe single sign-on as a process that allows one identity to be used across multiple applications. That arrangement reduces repeated authentication, but each connected application may still apply its own access rules.
That distinction explains a common support case: Merlin opens, yet one required tool remains unavailable. The central identity may be valid while the application lacks the appropriate hotel, department, employer, or role assignment.
Check scope first.
A failure affecting every workplace resource points toward the Network ID, password, account status, or second-factor method. A failure limited to one application should be routed to the application owner or workplace administrator before the central password is changed.
Use Merlin, not the guest login
IHG One Rewards is a guest loyalty account. It is used for hotel bookings and membership activity, while Merlin is tied to authorized workplace access. The current One Rewards page remains separate from the Merlin authentication flow.
Use the task to identify the account:
| Task | Start here |
|---|---|
| Access an internal hotel or corporate tool | IHG Merlin |
| Manage loyalty membership or a guest booking | IHG One Rewards |
| Request or administer a workplace identity | Network Account process or MyID |
| Recover an existing workplace identity | Merlin recovery or Password Central |
The same email address can appear in more than one IHG environment. That does not prove that the accounts use the same password, status, or recovery process.
Do the account check first. Skip One Rewards recovery when the actual problem concerns an internal workplace application.
Is the account new, existing, or disabled?
Before selecting any recovery option, place the account in one of three states.
New account: The user has not completed workplace registration or received the required identity.
Existing account: The Network ID has worked before, but the password, username, or second-factor method is now causing trouble.
Disabled account: The identity exists, but its active status must be restored.
These situations need different actions. A new request will not re-enable a disabled identity. A password reset cannot complete an invitation that was never registered.
IHG’s registration guidance says eligible users may receive an invite code and complete self-registration through the invitation link or the IHG login page. Corporate employees and certain managed-hotel colleagues receive a Network ID and temporary password through onboarding, while contractors and vendors must work through their IHG corporate contact.
Identify the state first. Skip duplicate account requests.
How new users receive a Network ID
Merlin registration is based on an eligible workplace or sponsored relationship. It is not general public signup.
IHG says invited users receive a code at the address supplied for the request and can complete self-registration through the message link or the IHG login page. Corporate employees and colleagues at IHG-managed hotels in the United States and United Kingdom are told that they will receive their Network ID and temporary password before the start date.
Contractors and vendors follow another route. Their IHG corporate contact must arrange identity creation through the applicable internal process.
No invitation? Return to the manager, administrator, or corporate sponsor who initiated access.
Password recovery comes later. When registration has not finished, the useful question is whether the correct workplace request exists, not whether the password-reset page recognizes the user.
Procedures may vary by region and type of hotel relationship.
Password Central and the correct domain
IHG’s hotel password instructions direct users to Password Central. The recovery process requires the appropriate domain and User ID, and the official page warns that a person who has forgotten the username cannot use the tool and must contact the IHG Service Desk.
Corporate and other account categories also have dedicated reset guidance.
The domain is a functional field.
A genuine Network ID entered under the wrong account environment may not produce the expected recovery route. Confirm whether the account belongs to a corporate, managed-hotel, franchise-hotel, or other applicable category before assuming that it has disappeared.
Unknown username? Stop there.
Trying several possible IDs can produce more failed attempts without identifying the correct identity. Use the support route assigned to the workplace account.
Why one reset can look unsuccessful
A reset should be tested methodically rather than across several applications at once.
IHG’s Network Account Support page tells users to test a new password by signing in with the Merlin ID and the replacement password, then complete second-factor authentication.
That sequence separates three layers:
- The Network ID must be recognized.
- The replacement password must be accepted.
- The registered second factor must complete successfully.
Test Merlin first. Skip immediate testing across every hotel workstation, browser profile, and downstream application.
A second password reset performed before the first result is understood can make troubleshooting harder. The user may no longer know which credential is current, while saved sessions or devices continue presenting older account information.
One clean test is enough.
The account may need re-enablement
A disabled account is not the same problem as a forgotten password.
IHG’s current Network Account Support page states that a user may need to call the help desk and choose the Password reset option to have the account re-enabled. It also says that a General Manager or Hotel IT Admin may be able to re-enable the account in MyID.
This is a useful distinction that many generic login pages miss. When an identity has been disabled, creating a new password does not necessarily change its active status.
Check re-enablement first when:
- The account previously worked
- Recovery completes but login remains unavailable
- The colleague recently returned or changed assignments
- The workplace administrator can still locate the identity in MyID
Do not create a second Network ID merely because the original account is inactive. The GM, Hotel IT Admin, or help desk should determine whether the existing identity can be restored.
Separate password and second-factor failures
IHG’s support flow places second-factor authentication after the Network ID and password test.
That gives the error a clear boundary.
If access stops before the second-factor stage, check the identity, domain, password, and account status. If the primary sign-in succeeds but the second-factor step fails, focus on the registered authentication method.
Do not reset a working password because a separate authentication factor is unavailable.
The correct support action may involve restoring the existing method or registering a replacement through IHG’s account-support process. A new account request would not repair a factor attached to the existing identity.
Narrow problem. Narrow response.
Merlin works, but the required app does not
A successful central login can coexist with a missing application permission.
IHG’s Brand Central login, for example, references Merlin terms and help while operating as a distinct resource. Other official IHG systems also provide their own sign-in entry while recognizing IHG account access.
This means “I can enter Merlin” and “I can open every IHG system” are not equivalent statements.
When only one tool fails, ask the workplace administrator to verify:
- The hotel or corporate organization attached to the identity
- The colleague’s active role
- The application assignment
- Whether a recent transfer changed access
- Whether the tool has a separate onboarding requirement
Do that before resetting the central password.
An account accepted by several unrelated tools is usually not experiencing a broad authentication failure. The remaining problem should be routed to the owner of the affected application.
Avoid transient authorization links
The live Merlin sign-on page may appear through a long authorization address containing redirect and session parameters. The visible page provides the recovery control and login action, but the generated address itself should not be treated as a permanent bookmark.
Return through the approved Merlin entry route supplied by IHG or the workplace rather than saving a temporary authorization request.
This matters after a session expires. A user can keep reopening the same stale redirect and conclude that the account is broken, even though a fresh route would create a new authentication request.
Start fresh. Skip the expired tab.
When the help desk should take over
Use the IHG Service Desk, GM, Hotel IT Admin, or corporate sponsor when:
- The Network ID was never issued
- An invitation was expected but did not arrive
- The username is unknown
- Password Central cannot locate the expected account
- The identity appears disabled
- Second-factor authentication cannot be completed
- Merlin works but a required application remains unavailable
IHG specifically directs unknown-username cases to the Service Desk and identifies the help desk or a GM or Hotel IT Admin as possible routes for account re-enablement.
A useful support report identifies the account category, associated hotel or corporate organization, affected application, exact error wording, and the point where the process stops.
Keep all authentication secrets inside IHG’s approved sign-in and recovery flow.
Frequently asked questions
Is IHG Merlin a guest account?
No. It is for workplace access.
Can anyone create a Merlin account?
No. The user needs an eligible hotel, corporate, contractor, vendor, or sponsored relationship. Setup may begin through an invitation, corporate onboarding, or an IHG sponsor.
What if I forgot my Merlin username?
Contact the IHG Service Desk. IHG’s hotel reset instructions state that the self-service tool cannot be used when the username is unknown.
Can my hotel reactivate my account?
Possibly. IHG says a GM or Hotel IT Admin may be able to re-enable an account in MyID, while the help desk also provides a re-enablement route.
Why does my password work but login still stops?
The failure may be at the second-factor stage. IHG’s support instructions place that check after the Merlin ID and password, so focus on the registered authentication method rather than changing the password again.
Why can I open Merlin but not another IHG application?
The central identity may be valid while the application lacks the required hotel, employer, department, or role assignment. Ask the workplace administrator or application owner to check permission before changing the central account.
Should I save the long login address as a bookmark?
No. Authorization addresses can contain temporary redirect and session information. Use the approved Merlin entry route supplied by IHG or your workplace instead.
Is IHG One Rewards login the same as Merlin?
No. One Rewards is the guest loyalty environment, while Merlin is intended for authorized workplace resources.
Begin by deciding whether the identity is new, existing, or disabled. Then address the exact layer that fails instead of repeating broad account resets.