MFA: First time setup wizard

You can follow these steps if you're prompted to set up your security info immediately after you sign-in to your school account. A video containing instructions can be found here: https://www.youtube.com/watch?v=Q8OzabuNwHI

  •  You will be prompted to "Start by getting the app".
    • Select next to setup your mobile device with the Microsoft Authenticator.
      • Setting up the Microsoft authenticator app will be done via your mobile phone.
    • If you would like verify your identity by a phone call or text message, select "I want to set up a different method"
  • Setting up the Microsoft Authenticator App
    • Before continuing, you will need to download the authenticator app on your mobile device.
    • On your computer, select next until and you will be prompted with a QR code.
    • On your phone with the Microsoft Authenticator app open, select the three dots in the top right and choose "Add account".
      • Choose "Work or school account"
      • Choose "Scan a QR code"
    • Your camera will now be activated. Aim the mobile camera at the QR code displayed on your computer.
    • Your account is now linked to the app. You will be prompted to accept sign in the app. Once approved, you will be routed to your email inbox.
  • Second option: Verification code via phone call or SMS text message.
    • If you would rather receive a phone call with the verification number or receive a text message, select "I want to set up a different method".
    • From the drop down choose "Phone"
    • Enter your phone number and choose either "Text me a code" or "Call me".
    • Use the verification number you received and enter it in the web browser. (See picture below)
    • You will prompted that SMS was verified. Select and then next to complete setup.

 

Setting up through the wizard on a mobile device:

  1. From your mobile device, download the "Microsoft Authenticator App" from your mobile store.
  2. Open the app on your phone. Select the three dots in the top right corner and choose "Add account"
  3. Select "Work or school account"
  4. Select "Sign in"
  5. Enter your user name and password when prompted.
  6. Choose "Pair your account to the app by clicking this link."
  7. The app is now configured for MFA with your account
  8. The next time you log in to Microsoft suite you will be sent a notification on your mobile app to allow sign in. Select "Approve" to continue signing in. If you ever receive a notification to sign in when you have not actively attempted to sign in, select "Deny".

 

Important Feature Updates:

Update May 2023: Microsoft has begun enforcing number matching for Microsoft Authenticator Multifactor Authentication (MFA) alerts to block MFA fatigue attack attempts. MFA fatigue attacks are becoming common tactics by threat actors. When a user’s password has been compromised, threat actors will continuously attempt to log in to an account, prompting users to accept the MFA log in on their mobile device. Users can become fatigued by the amount of authenticator notifications on their mobile device and select accept to stop the messages – providing the attacker access into the account.

Number matching is a key security upgrade to traditional second factor notifications in Microsoft Authenticator. With number matching enabled, users will be required to type a number displayed on the screen to complete the authentication process. This feature helps to prevent accidental approvals and protection against MFA fatigue attacks.

Details

Article ID: 141224
Created
Mon 2/7/22 3:59 PM
Modified
Tue 3/5/24 2:30 PM