A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
Because the Microsoft Authenticator app on the old phone is no longer available, the MFA methods for that account must be reset or an alternative verification method must be used.
Use one of these supported paths:
- If there is another MFA method already configured (phone/SMS/call)
- When prompted for the code, choose “Sign in another way” (or similar) and select the alternative method (SMS, phone call, office phone, etc.).
- After signing in, go to the Security info / Additional security verification page for that account and either:
- Add the new phone as an MFA method, and/or
- Remove the old app-based method.
- Then install Microsoft Authenticator on the new iPhone and re-register it as an MFA method.
- If there is no alternative method and this is a work/school (Microsoft 365) account
- The tenant’s global admin must reset the user’s MFA methods.
- An admin can use the Microsoft Entra admin center to Require re-register multifactor authentication for that user so MFA can be set up again on the new phone. This is the standard way to reset MFA when a device is lost or reset.
- If the locked-out user is the only global admin in the tenant, a normal admin reset is not possible. In that case, a support ticket with Microsoft’s Data Protection team is required to restore access and reset MFA, as described in the referenced Q&A.
- If this is a personal Microsoft account and 2FA is blocking access
- From a device where the account is still signed in (for example, a PC browser), go to the account’s security page and temporarily turn off two-step verification, as shown in the referenced Q&A resolution.
- Sign in again on the new iPhone, then re-enable two-step verification and add the new phone/Microsoft Authenticator as a method.
- If there is no alternative method and no admin access at all
- When no other verification methods are configured and no admin can reset MFA, the only supported path is to work with Microsoft support (or the tenant’s reseller/partner, if applicable) so they can open a ticket with the Data Protection team to verify identity and reset MFA from their side.
GoDaddy cannot remove the MFA requirement themselves for a Microsoft 365 tenant; the reset must be done either by a tenant admin in Microsoft Entra or by Microsoft support/Data Protection if the admin is locked out.
References:
- Use a screen reader to set up and troubleshoot multifactor authentication
- Migrate to a new iPhone for work
- I need to reset my mfa methods - Microsoft Q&A
- Severity A Situation - Locked out of global admin account (MFA) - business down - Microsoft Q&A
- Cannot authenticate with E-mail when logging into Microsoft Authenticator(iOS). - Microsoft Q&A
- Microsoft authenticator sending me into a spiral - Microsoft Q&A
- Microsoft Authenticator app doesn't show 6-digit OTP code - Microsoft Q&A