[MFA Modernization Pilot] Add MFA Sign-in Method: Passkey in Microsoft Authenticator (iOS)

⚠️ WARNING: This article is intended for participants in the MFA Modernization Pilot only. If you are not a pilot participant, the information in this article may not apply to you. Contact the IT Service Desk if you have questions about your current sign-in experience.

This article walks you through adding a device-bound passkey in the Microsoft Authenticator app as a multi-factor authentication (MFA) sign-in method for your University of Maine System (UMS) account on an iPhone or iPad. A passkey lets you sign in using your device's biometrics, such as Face ID or Touch ID, instead of a password.

ℹ️ INFO: We recommend setting up at least two sign-in methods on two different devices, such as the Microsoft Authenticator app on your phone plus a passkey on your computer, so you are not locked out if you lose access to one device.
ℹ️ INFO: You must have Microsoft Authenticator already set up on your account before you can add a passkey in Authenticator. If you see "Passkey in Microsoft Authenticator" as an option before you have added Authenticator itself, skip it and complete Authenticator setup first (see "Before you begin" below).

Instructions

How would you like to complete this setup?

Self-guided

Go to aka.ms/mfasetup and follow the on-screen prompts.

📖

Written instructions

Jump to step-by-step instructions

▶️

Guided video

Jump to the video walkthrough

🛠️

Common problems

Jump to troubleshooting


ICON KEY: 💻 = do this on your computer    📱 = do this on your mobile device

Before you begin

Creating your passkey

  1. 💻 On your computer, open your default web browser and go to aka.ms/mysecurityinfo.
  2. 💻 Confirm that Microsoft Authenticator is listed as an existing sign-in method.
  3. 💻 Under "Security info," click Add sign-in method.
  4. 💻 In the "Add a sign-in method" box, select Passkey in Microsoft Authenticator.
  5. 💻 In the "Create a passkey in Microsoft Authenticator" box, review the requirements, then click Next.
  6. 💻 A "Finish creating your passkey in Authenticator" screen will appear. Continue on your iPhone or iPad.
  7. 📱 On your iPhone or iPad, open the Microsoft Authenticator app.
  8. 📱 Tap your University of Maine System account.
  9. 📱 Under "Other ways to sign in," tap Create a passkey.
  10. 📱 On the "Let's create your passkey" screen, tap Sign in.
  11. 📱 Enter your password, then tap Sign in.
  12. 📱 Follow the on-screen instructions to complete verification, then tap Continue. Your verification method may differ from the example shown on screen.
  13. 📱 Wait while your passkey is created.
  14. 📱 You will see a "Passkey created" confirmation screen. Tap Done.
  15. 💻 Back on your computer, click Next.
  16. 💻 You will see a "Passkey created" confirmation screen. Click Done.
  17. 💻 You should now see Passkey (Device bound); Microsoft Authenticator listed as a sign-in method under Security info.

You have successfully added a device-bound passkey in Microsoft Authenticator as an MFA sign-in method for your UMS account. If this is the only sign-in method on your account, we recommend adding a second one on a different device before you finish. See the other articles in the How-To Guides collection for additional methods.


Video walkthrough

Use the interactive walkthrough below to follow along step by step.


Common problems

If you run into an issue not covered here, see the MFA Troubleshooting knowledge base articles.

The IT Service Desk is available by phone, email, chat, and walk-up if additional support is needed.

Environment

  • Applies to all University of Maine System (UMS) accounts
  • Requires Microsoft Authenticator to already be set up on your account
  • iOS 17 or later
  • Requires a web browser on a computer to complete setup