Add MFA Sign-in Method: Hardware Security Key (FIDO2) using macOS (Entra MFA)

Summary

Add a FIDO2 hardware security key, such as a YubiKey, as a passkey sign-in method for your University of Maine System account on a Mac.

Body

This article walks you through adding a hardware security key as a passkey for your University of Maine System (UMS) account on a Mac. A passkey stored on a security key is a physical device you plug in and touch to verify your identity when signing in.

â„šī¸ INFO: We recommend setting up at least two sign-in methods on two different devices, such as this security key plus the Microsoft Authenticator app on your phone, so you are not locked out if you lose access to one device.

Instructions

How would you like to complete this setup?

⚡

Self-guided

Go to aka.ms/mfasetup and follow the on-screen prompts.

🧭

Safari

Jump to the Safari instructions

🌐

Google Chrome

Jump to the Chrome instructions

đŸ› ī¸

Common problems

Jump to troubleshooting


ICON KEY: đŸ’ģ = do this on your computer    đŸ”‘ī¸ = do this on your security key

Before you begin

  • đŸ’ģ A Mac with either Safari or Google Chrome
  • đŸ”‘ī¸ A hardware security key (FIDO2), such as a YubiKey, with a PIN already set up

If you have not yet created a PIN for your security key, see Understanding YubiKey PINs (External Link) before continuing.

â„šī¸ INFO: The steps on a Mac differ depending on which browser you use. Follow the section below that matches your browser. If you are using a Windows computer instead, see the Windows version of this article in the How-To Guides collection.

Registering your security key in Safari

  1. đŸ’ģ On your Mac, open Safari and go to aka.ms/mysecurityinfo.
  2. đŸ’ģ Under "Security info," click Add sign-in method.
  3. đŸ’ģ In the "Add a sign-in method" box, select Passkey from the list.
  4. đŸ’ģ In the "Sign in faster with your face, fingerprint, or PIN" box, click Next.
  5. đŸ’ģ A "Setting up your passkey" box appears, followed by a system notification window.
  6. đŸ’ģ In the "Save a passkey?" box, click More Options.
  7. đŸ’ģ In the "Other Devices" box, click Use Security Key, then click Continue.
  8. đŸ”‘ī¸ When prompted, insert your security key, then place your finger on the touch sensor.
  9. đŸ”‘ī¸ Enter your Security Key PIN, then click Continue.
  10. đŸ”‘ī¸ If you are prompted to do so, reinsert your security key, then place your finger on the touch sensor again.
  11. đŸ’ģ In the "Let's name your passkey" box, enter a memorable name for your passkey, then click Next.
  12. đŸ’ģ In the "Passkey created" box, click Done.
  13. đŸ’ģ Confirm that Passkey (Device bound) now appears in your list of sign-in methods.

Video walkthrough (Safari)

Use the interactive walkthrough below to follow along step by step.


Registering your security key in Google Chrome

  1. đŸ’ģ On your Mac, open Google Chrome and go to aka.ms/mysecurityinfo.
  2. đŸ’ģ Under "Security info," click Add sign-in method.
  3. đŸ’ģ In the "Add a sign-in method" box, select Passkey from the list.
  4. đŸ’ģ In the "Sign in faster with your face, fingerprint, or PIN" box, click Next.
  5. đŸ’ģ A "Setting up your passkey" box appears, followed by a system notification window.
  6. đŸ’ģ In the "Save a passkey?" box, click Cancel.
  7. đŸ”‘ī¸ When prompted, insert your security key, then place your finger on the touch sensor.
  8. đŸ”‘ī¸ Enter your Security Key PIN, then click Next.
  9. đŸ”‘ī¸ When prompted, place your finger on the touch sensor of your security key again.
  10. đŸ’ģ In the "Let's name your passkey" box, enter a memorable name for your passkey, then click Next.
  11. đŸ’ģ In the "Passkey created" box, click Done.
  12. đŸ’ģ Confirm that Passkey (Device bound) now appears in your list of sign-in methods.
WARNING: Do not scan the QR code shown in the "Save a passkey?" box at step 6. Clicking Cancel does not cancel your setup. It moves you on to the security key prompt, which is the next step.

Video walkthrough (Google Chrome)

Use the interactive walkthrough below to follow along step by step.


Common problems

If you run into an issue not covered here, see the MFA Troubleshooting knowledge base articles.

The IT Service Desk is available by phone, email, chat, and walk-up if additional support is needed.

Environment

  • Applies to all University of Maine System (UMS) accounts
  • macOS using either Safari or Google Chrome
  • Requires a FIDO2 hardware security key (such as a YubiKey) with a PIN already configured
  • Steps differ by browser; other browsers such as Firefox may look different

Details

Details

Article ID: 174555
Created
Wed 9/9/26 2:17 PM
Modified
Wed 9/9/26 2:18 PM
Applies To
Students
Faculty
Staff