Microsoft 365 MFA Setup Guide
Why MFA?
Multi-factor Authentication (MFA) is an extra step added to the log-in process, such as a code on your phone or a fingerprint scan, that helps verify your identity and prevent cybercriminals from accessing your private information.
By enabling MFA you prevent a hacker gaining access to your account, even if they get a hold of your password, without the additional Authentication Factor (i.e Auth Code) they cant log in to your account.
What do I need?
To get started with multi-factor authentication on your 365 account, there are a few pre-requisites;
– Microsoft Authenticator App (AppStore / Play Store)
– Microsoft Outlook Mobile App (AppStore / Play Store) *Optional
– Your 365 username and password (Contact support)
You’ll need to download Microsoft Outlook Mobile App if you need to access your email account on your phone or tablet.
To get started with configuring MFA;
Step 1. Click on the following link and log in with your 365 detail – https://aka.ms/MFASetup
Step 2. Change “Authentication Phone” to “Mobile App” and click Next.
Step 3. Select “Use verification code” and click Set up.
Step 4. When you reach the page below, you need to open your Microsoft Authenticator App on your phone.
Step 5. In the Microsoft Authenticator App;
- 5a. Click + or the three dots to add an account.
- 5b. Choose “Work or school account”.
- 5c. Choose “Scan QR Code”.
- 5d. Scan the QR code from step 4.
Step 6. After scanning the QR code, click Next on the computer screen.
Step 7. Enter the 6 digit code from the Microsoft Authenticator App and click Verify
To avoid losing access to your account in the event you cant use the Microsoft Authenticator App, Microsoft will ask you to provide a secondary method of authentication, this will use you mobile phone number
Step 8. Select your country or region, enter your mobile number and click next.
*IMPORTANT NOTICE*
On the next screen, you will be provide with an app password. This app password is used to BYPASS the security of your MFA on devices that are unable to use MFA (i.e Outlook on your desktop). It is EXTREMELY important that you DO NOT provide this password to ANYONE or use it to sign in online. Store this password somewhere secure temporarily.
**Unauthorised users who obtain this App Password will have FULL control of your account**
After enabling MFA, your Outlook for desktop will eventually (normally within 24 hours) prompt you for a new password, this will appear in the same window as the image below over the top of Outlook for desktop, this will not be asked for via an email or web link.
When this prompt appears on Outlook for desktop, enter the App Password you stored, tick the “Remember my credentials” box then OK, and delete the App Password from wherever you have it stored.
This guide provides the securest method of keeping your 365 user account safe, in order for this to be effective, you must not share your Microsoft Authenticator App codes with anyone.
These codes are only to be used when accessing your 365 products via official Microsoft sites only. No email, weblink, or third-party website should ever request this code, if you are unsure about a site reach out to support immediately for clarification of its authenticity.