How do I set up Microsoft Authenticator for the first time?

Summary

Use these instructions to set up Microsoft Authenticator when enrolling in multifactor authentication for the first time or after ITS has reset your MFA settings.

Body

Multifactor authentication, or MFA, protects your account by requiring an additional verification step when you sign in.

Follow these instructions if:

  • You are setting up MFA for the first time.
  • ITS reset your MFA settings and instructed you to enroll again.
  • You see More information required after signing in.

This process registers Microsoft Authenticator as a verification method for your Minnesota State Microsoft 365 account. Microsoft describes this as registering an additional sign-in verification method.

Before you begin

You will need:

  • A computer with an internet connection
  • Your smartphone or tablet
  • Your StarID and StarID password
  • The Microsoft Authenticator app installed on your mobile device

Install the official Microsoft Authenticator app published by Microsoft Corporation from your device’s app store:

  • iPhone or iPad: Search the Apple App Store for Microsoft Authenticator
  • Android: Search Google Play for Microsoft Authenticator

Important: Complete the setup using both a computer and your mobile device. The computer will display a QR code that you must scan using Microsoft Authenticator on your mobile device.

Step 1: Sign in using your Minnesota State account

On your computer, sign in to Microsoft 365 or another service that uses your Minnesota State account.

Enter your username using the appropriate format:

  • Employees: StarID@minnstate.edu
  • Students: StarID@go.minnstate.edu

Enter your StarID password and select Sign in.

Step 2: Begin setting up MFA

After you sign in, you will see a "More information required" message. This means you need to provide additional information to help secure your account.

Select Next.

Microsoft sign-in screen displaying a More information required message and a Next button.

Step 3: Start the Microsoft Authenticator setup

The Keep your account secure page will open.

If Microsoft Authenticator is already installed on your mobile device, select Next.

If it is not installed:

  1. Install Microsoft Authenticator from your mobile device’s app store.
  2. Return to the setup page on your computer.
  3. Select Next.

Microsoft Keep your account secure page with instructions to install Microsoft Authenticator and a Next button.

Keep this page open on your computer. You will use your mobile device for part of the remaining setup.

Step 4: Prepare Microsoft Authenticator

Open Microsoft Authenticator on your mobile device.

If this is the first time you have opened the app, follow the onscreen prompts. Allow notifications when asked so the app can send you sign-in approval requests.

In Microsoft Authenticator:

  1. Select + or Add account.
  2. Select Work or school account.
  3. Select Scan a QR code.
  4. Allow camera access if prompted.

The app needs camera access to scan the QR code displayed on your computer. If you don't allow camera access, Microsoft also provides a manual setup option.

Microsoft Auth

Microsoft Authenticator screen showing options to add a work or school account and scan a QR code.

Step 5: Display the QR code

Return to the Set up your account page on your computer.

Select Next.

A QR code will appear on the computer screen.

Microsoft Set up your account page displaying a QR code for Microsoft Authenticator enrollment.

Important: Scan the QR code from within Microsoft Authenticator. Do not use your mobile device’s regular camera app.

Step 6: Scan the QR code

On your mobile device, use the QR code scanner in Microsoft Authenticator to scan the code displayed on your computer.

After you add the account to Microsoft Authenticator, return to your computer and select Next.

If you can't scan the QR code, select Can’t scan the QR image? on the computer and follow the instructions to enter the information manually.

Step 7: Approve the test notification

Microsoft will send a test notification to Microsoft Authenticator.

On your mobile device:

  1. Open the notification or Microsoft Authenticator.
  2. Enter the number shown on your computer, if prompted.
  3. Select Approve.

Return to your computer after approving the request.

Microsoft Authenticator setup page displaying a number to enter in the mobile app.

Microsoft Authenticator sign-in request asking the user to enter a number and approve the request.

Step 8: Finish the setup

After the test is approved, the computer will confirm that the notification was approved successfully.

Select Next, and then select Done to complete the setup.

Microsoft Authenticator is now registered as an authentication method for your Minnesota State Microsoft 365 account. Microsoft’s setup process tests the registration by sending a notification to the app before completing enrollment.

What happens after setup?

When Microsoft requires additional verification during a future sign-in, it may send a notification to Microsoft Authenticator.

To complete the sign-in:

  1. Review the sign-in request.
  2. Enter the number displayed on the sign-in screen, if prompted.
  3. Select Approve.

Only approve a request when you are actively signing in.

Security warning: If you receive an unexpected Microsoft Authenticator request, select Deny. Do not approve a request that you did not initiate.

What if I replaced or lost my phone?

If possible, set up your new phone while you still have access to your old phone. This is the easiest option because you can use your existing authentication method to sign in and add the new device to your account.

Adding Microsoft Authenticator to a new device does not automatically remove it from your old device. After you successfully enroll your new phone and confirm it works, remove Microsoft Authenticator from the old device and unregister the old device from your work or school account. 

If you no longer have access to your old phone, cannot approve authentication requests, or can't sign in, contact ITS for help. To protect your account, ITS must verify your identity before resetting your multifactor authentication methods. Verification may be completed:

  • In person with a photo ID, or
  • Through a Zoom meeting with your camera enabled and photo ID.

Once ITS verifies your identity, it can reset your MFA registration so you can enroll Microsoft Authenticator or another approved authentication method on your new device.

Tip: Whenever possible, keep your old phone until you have successfully set up and tested Microsoft Authenticator on your new device. This can help you avoid delays and the need for an MFA reset.

What if I do not have a smartphone?

Contact ITS to explore alternative authentication methods. 

What if I do not see the setup prompt?

If you do not see the More information required or Keep your account secure screens and are taken directly to a Verify your identity page, Microsoft is attempting to use authentication methods already registered to your account.

If you still have access to one of the verification methods shown, complete the sign-in process and then review or update your authentication methods.

If you don't have access to any of the options displayed, or if your Microsoft Authenticator app no longer works because you replaced your phone, reset your device, uninstalled the app, or otherwise lost access to your registered authentication method, contact ITS for assistance.

To protect your account, ITS must verify your identity before resetting your MFA registration. Verification may be completed:

  • In person with a photo ID, or
  • Through a Zoom meeting with your camera enabled and a photo ID.

After we reset your MFA settings, sign in again and follow the setup instructions in this article.

Microsoft sign-in screen displaying available verification methods on a Verify your identity page.

Get help

If you need help setting up Microsoft Authenticator, do not have access to a smartphone, or cannot access your account:

When requesting help, please do not send your password, a verification code, or a screenshot containing a live QR code.

Details

Details

Article ID: 29918
Created
Mon 9/28/26 4:56 PM
Modified
Mon 9/28/26 5:00 PM