Multi-Factor Authentication (MFA)
This guide provides step-by-step instructions for users on how to reset their multi-factor authentication (MFA) using the Microsoft Authenticator app. It offers a user-friendly walkthrough, ensuring a seamless and secure process to regain access to their accounts while maintaining the highest level of security.
Setting Up MFA
When signing in you may see this message.
This message indicates that you must reconfigure your Multi-Factor Authentication. Follow through the on-screen prompts until you reach a page with a QR Code
Once you reach this page, please proceed to the next steps on your mobile device.
Delete previous sign-in method
This section is only necessary if you have previously set up Microsoft Authenticator.
- To set up MFA again you must delete the previous account to receive MFA notifications.
- Open Microsoft Authenticator
- Select your
@piedmont.eduor@lions.piedmont.eduaccount - Select the gear icon in the top right corner
- Select Remove Account
- Press Continue and/or This app only to finish removing the account
Set up Microsoft Authenticator
- Open the Microsoft Authenticator app on your iOS or Android device
- If you do not have Microsoft Authenticator installed, please download it from the iOS App Store or Google Play Store
- Open the app, allow notifications (if prompted)
- Select Add account from the '+' icon in the upper-right
- Then select Work or school account
On your Computer:
- On the Set up your account page, select Next
- The Scan the QR code page appears
- Use your mobile device to scan the provided QR code with the Microsoft Authenticator app
- Select Next on your computer
- A 2 digit number is displayed on the computer
On your Mobile Device:
- A notification is sent to your mobile device prompting for a 2 digit number
- On your mobile device, enter the 2 digit number, show on the computer, in the Microsoft Authenticator app
- Select Done on your computer
- Your security info is now updated to use the Microsoft Authenticator app by default to verify your identity when using two-step verification or password reset.
Our Helpdesk Team is happy to provide assistance with this process! Just give us a call at 706-894-4205!
MFA Passkeys
1. What is a Passkey?
A passkey is a modern, phishing-resistant way to sign in without using a password!
- Instead of something you know (like a password), a passkey uses something you have (your phone or device) and something you are (Face ID, Fingerprint, or device PIN)
- The credential is stored securely on your device and is never shared with the website or service that you're signing into. Because of this, passkeys can't be reused, stolen by fake websites, or guessed.
- Passkeys are based on industry security standards (FIDO2). Your device proves to Microsoft that it's really you, without ever sending a password across the internet.
- If the site is not legitimate, the passkey simply won't work, and there's nothing for the attacker to steal.
- Your device becomes your key, and your identity stays locked inside it!
- Did you know that passwords are the weakest link in modern security? They are often:
- Reused
- Phished
- Leaked in breaches
- Guessed
- Microsoft's goal with passwordless sign-in is to:
- Eliminate passwords as an attack target - No passwords means nothing to phish, reuse, or brute-force.
- Reduce account takeovers and phishing - Passkeys only work on the real Microsoft sign-in and approved services. Fake sites can't trick your device into handing over a credential.
- Make sign-ins faster and simpler - Approving with Face ID, fingerprint, or a device PIN is quicker than typing passwords and codes.
- Improve both security and user experience - Stronger security without extra steps, fewer account lockouts.
Passkeys are part of Microsoft's move to a passwordless future where accounts are protected by your device and biometrics instead of passwords that can be stolen, guessed, or phished
2. Create a Passkey
- Open the Microsoft Authenticator app on your mobile device.
- Select your @Piedmont.edu or @lions.piedmont.edu account.
- Under Other ways to Sign in, select Create a Passkey
-
Select Sign in on the next page.
-
Login using your Piedmont credentials.
-
You will be prompted to complete MFA.
-
Once logged in, your Passkey is created.
3. Sign in with Passkey
- When you login using your Piedmont credentials, you will receive a new popup window in place of Microsoft Authenticator
- Select iPhone, iPad, or Android device.
- Use your mobile device to scan the QR Code on your computer, select Sign in with Passkey
- On your mobile device, a message will appear "Sign in to login.microsoft.com" on the other device with your passkey for "@piedmont.edu" saved in "Authenticator" ?
- Choose Use Passkey
- Your mobile device will prompt for Face ID or biometrics.
4. Use Original Authentication method
- In some cases you may need to use the original MFA through the Authenticator app, to do so, select the 'X' or 'Cancel' button and select Sign in Another way
- Select Approve a request on my Microsoft Authenticator app to complete original MFA steps.
- Follow the on-screen instructions to approve the Authenticator request.