A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
To get a code from Microsoft Authenticator, the account must first be added and configured in the app and in the account’s security settings.
Follow these steps to set it up so codes/approvals are generated:
- Install and open Microsoft Authenticator on the phone (Android or iOS). If not installed yet, download it from the Apple App Store or Google Play store using the links in the Download Microsoft Authenticator article.
- In the app, tap the + (plus) icon.
- Choose the account type:
- For a personal Microsoft account (Outlook, Hotmail, etc.), select Personal account.
- For work or school, select Work or school account.
- On a PC or browser, sign in to the account’s security page:
- For personal Microsoft accounts: go to the Security tab at https://account.microsoft.com/security and sign in.
- Select Manage how I sign in.
- Select Add a new way to sign in or verify.
- Choose Use an app.
- If Authenticator is already installed, select Set up a different Authenticator app, then Next to show a QR code.
- On the phone, in Authenticator, choose Scan a QR code and scan the QR code shown on the PC.
- If the camera cannot be used, on the PC select I can’t scan the bar code and on the phone tap Enter code manually, then enter the code shown.
- After this setup completes, the account in Authenticator will either:
- Show sign-in requests (notifications) that can be approved when prompted, or
- Show a one-time password code (6-digit code) that can be typed into the sign-in page when requested.
To actually get and use a code or approval:
- Go to the site or app where sign-in is needed.
- Enter the username and select Next.
- Choose Send notification or, if needed, Other ways to sign in → Approve a request on my Microsoft Authenticator app.
- When prompted to Check your Authenticator app, open Authenticator on the phone.
- Either:
- Approve the New sign-in request (possibly by entering the number shown on the sign-in screen), or
- Read the 6-digit verification code shown for that account in Authenticator and type it into the sign-in screen.
If text messages are preferred instead of the app, a mobile phone can be set up as a two-step verification method at https://mysignins.microsoft.com/security-info by choosing Authentication phone and Send me a code by text message.
References:
- How to add your accounts to Microsoft Authenticator
- Sign in using Microsoft Authenticator
- Download Microsoft Authenticator
- Authentication methods in Microsoft Entra ID - Microsoft Authenticator app
- Set up a mobile device as a two-step verification method
- Use a screen reader to set up and troubleshoot multifactor authentication
- How to go passwordless with your Microsoft account
- Why is Microsoft texting me?