About Multi-Factor Authentication

Service Alert: On October 1, Minnesota State applied planned changes to multi-factor authentication that caused login issues on some University Microsoft 365 accounts. The System Office has rolled back the changes and is actively working to resolve the issue, but it may take time to go into effect. Updates will be shared on the IT System Status page as they are available. If you're experiencing issues or errors with MFA when logging in to your University account, contact the IT Solutions Center by filling out the Login Assistance Form. A support person will be in touch to help resolve your issue as soon as possible. Thank you for your patience as we work to support those affected.
Notice: Microsoft is ending support for text and call multi-factor authentication options on February 1, 2027. The Microsoft Authenticator app will be the default authentication method. If you currently use text or call, you'll be required to switch to the app. Read more about this transition

Overview

This article explains multi-factor authentication (MFA), a required security measure for University Microsoft 365 accounts. It includes basic information, links to setup instructions, alternative options, troubleshooting tips, and FAQs to help users.

What is Multi-Factor Authentication?

Multi-factor authentication is required on University Microsoft 365 accounts. It adds an extra layer of security by requiring a second form of verification when signing in. This helps protect accounts and data from unauthorized access. You can view your authentication settings in your account any time.

First Time Setup for New Students and Employees

When signing in to your Microsoft 365 account for the first time, you'll be prompted to complete the MFA setup process using the Microsoft Authenticator app.

Notice: Text and Call Methods Ending February 2027

On February 1, 2027, Microsoft is ending support for text and phone call authentication methods on all accounts. These methods are less secure and more vulnerable to phishing attacks. The Microsoft Authenticator app will be the supported authentication method. It's more resistant to phishing, faster, and more private than using a phone number. 

Text and Call Users, Action Needed

If you currently use text messages or phone calls to authenticate, take action now to avoid issues signing into your University account:

New Accounts

All new accounts will be guided to set up the Microsoft Authenticator app and unable to select text or call methods.

Alternative Authentication Option: Physical Security Key

If you can’t use a personal mobile device for authentication, the alternative option is to purchase a physical security key.  A physical security key is a small device that verifies your identity when signing in. You insert the key into your computer or tap it on a compatible device to complete the sign-in process. 

Faculty and Staff Keys

Purchasing information for faculty and staff will be added here as soon as it's available.

Student Keys

Purchasing information for students will be added here as soon as it's available.

Exceptions for Multi-Factor Authentication

For special circumstances, such as an accessibility need, an exception request will be available. Requests will be reviewed on a case by case basis. The exception request form will be added here as soon as it's available.

Troubleshooting

FAQ

Why are text and call authentication methods going away? What do I have to do?

On February 1, 2027, Microsoft is ending support for text and phone call authentication methods on all accounts because these methods are less secure. The Microsoft Authenticator app will be the supported authentication method. If you use text or call methods, follow the instructions to switch to the app.

I'm a new student or employee. How do I set up multi-factor authentication?

All new University accounts are automatically enrolled in multi-factor authentication. When signing in for the first time, you'll be prompted to complete the MFA setup process. Have a personal smart device and a computer handy.

I'm having issues setting up or using multi-factor authentication.

Contact the IT Solutions Center for support. Or, troubleshoot on your own:

Do I have to use my personal smartphone? What if I don't have one?

The supported method for authentication starting February 1, 2027 is the Microsoft Authenticator app using a personal mobile device. Other methods, including text and call, will no longer be supported by Microsoft. If you can’t use or don't have a personal mobile device, refer to the alternative options and exceptions.

Can I opt-out of multi-factor authentication?

Multi-factor is a critical security tool that protects your data as well as the data of our University. For special circumstances, such as an accessibility need, an exception request will be available. Requests will be reviewed on a case by case basis.

I lost my smartphone, how do I sign in?

If you lose your smartphone, contact the IT Solutions Center for help signing into your account. You should also immediately take steps to find and secure your device: Find, lock, or erase a lost Android device or Find a lost iPhone.

What happens if I get a new smartphone?

Follow the instructions to set up the Microsoft Authenticator app on your new device.

What should I do when I get a verification request I don’t recognize?

If you receive approval requests and you are not actively signing in to your University Microsoft 365 account, deny the access. 

Remain vigilant and beware of phishing attempts and suspicious actors. The University, including IT Solutions, will never ask you for your StarID password, or prompt you to approve multi-factor authentication on your account.

What University apps and services use multi-factor authentication?

Any app that utilizes Microsoft 365 single sign-on, including all Microsoft 365 apps, may require authentication.

  • Microsoft 365 apps
  • D2L Brightspace
  • Kaltura
  • Workday
  • Zoom
  • Zoom Phone
  • Wi-Fi Access
  • The Fountain
  • EZ Proxy
  • And others

Still Need Help?

Visit the IT Solutions Center page to view current hours, locations, and contact information.

Print Article

Related Articles (2)

Provides troubleshooting steps to fix issues with Microsoft verification codes not arriving by checking device settings, notifications, signal, and app configurations.
Setting up Multi-Factor authentication which is required for most university services such as Microsoft 365 (MavMAIL), Workday, and many other apps.

Related Services / Offerings (2)

Request assistance with multi-factor authentication issues.
IT Solutions provides support, management, and troubleshooting for StarIDs and multi-factor authentication at Minnesota State University, Mankato.