Step 1
Log in to the Microsoft 365 My Account page. Expand the My Account section and select Security Info. You will be prompted to authenticate with MFA.
Step 2
Step 4
OIT recommends having at least two methods associated with your account in case you switch phones and need to re-register the app. Methods available at CU Boulder include:
- Microsoft Authenticator: Recommended default method for most users. To set up, follow our Register and Set Up Microsoft Authenticator App tutorial starting on step 2.
- Passkeys: A passkey is a secure way to sign in without using text messages, phone calls, or one-time codes. The passkey is a credential stored on a device or in a password manager (like Apple's Face ID, a finger print, or Windows Hello.)
- Security Key: A security key is a physical device that users can plug into a computer via USB and authenticates without requiring a code (e.g. YubiKey).
- Hardware token: Similar to security keys, hardware tokens are physical devices that display a temporary One-Time Password (OTP) on a small screen or key fob that users type into the login prompt.
Select the method you’d like to use and follow the prompts. If setting up a security key, follow OIT’s tutorials on Setting Up a YubiKey (Mac) or Setting Up a YubiKey (Windows).