A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
For a work or school account, this is expected after moving to a new phone. After restore, Microsoft Authenticator usually restores only the account name. To finish setup on the new iPhone, open the account in Authenticator and sign in again. If it shows "Sign in to add your account", that is the expected state until sign-in is completed.
If the sign-in keeps looping because the only verification method is Authenticator on the old phone, use this path:
- If the old phone is still available, approve the sign-in there first.
- If another verification method exists such as SMS or call, use that to complete sign-in.
- If this is a work or school account and no other method is available, contact the organization’s IT admin or help desk. They must reset or re-register the MFA methods so Authenticator can be set up again on the new phone.
- If passkeys are enforced, add a new passkey for the new phone before removing the old device. Go to Security info at https://aka.ms/mysecurityinfo, select Add sign-in method, then choose Passkey or Passkey in Microsoft Authenticator.
Important points:
- Keep the old phone until sign-in works on the new phone.
- If push notifications are going to the old phone, that can cause this exact problem.
- For iPhone, backup/restore requires iCloud Drive, iCloud Keychain, iCloud Backup, and the Authenticator toggle in Saved to iCloud.
- Authenticator backup cannot be restored across platforms. Android-to-iPhone and iPhone-to-Android restore is not supported.
If the backup did not restore on the new iPhone, check this on the old device:
- Enable iCloud Drive.
- Enable iCloud Keychain.
- Enable iCloud Backup.
- In Saved to iCloud, make sure Authenticator is turned on.
- Make sure Authenticator is version 6.8.33 or later.
- Open the app at least once before switching phones.
- On the new iPhone, uninstall and reinstall Authenticator.