Microsoft Authenticator: Enrollment Instructions

Starting October 30th, 2026, Oakland University is requiring all faculty, staff, and students to register with Multi-Factor Authentication (MFA) through Microsoft Authenticator. This article describes the process for enrolling your account in Microsoft Authenticator after October 30th, 2026. If you would like to pre-enroll in Microsoft Authenticator prior to October 30th, 2026, please refer to the Microsoft Authenticator: Managing Sign-In Methods support article instead.

[Video coming soon]

Table of Contents

Procedures

Procedures

Steps for Enrollment

When attempting to sign in to a university resource after October 30th, 2026, if you do not already have Microsoft Authenticator registered with your account, you will be prompted for enrollment in Microsoft Authenticator. Enrollment in Microsoft Authenticator is required, and you must follow the on-screen prompts or the guide below. 

Account security setup screen prompting users to add another verification method.


Downloading Microsoft Authenticator

  1. Click the Next button on the screen above to begin the enrollment process.
  2. When prompted to install Microsoft Authenticator, click the Next button and install the Microsoft Authenticator application from the Apple App Store on iOS devices, or Google Play on Android devices. Click the Next button once you have the Microsoft Authenticator app installed.

Microsoft Authenticator setup screen with app download links and Next button available.


Scanning the QR Code

  1. You will now be prompted to transition to your mobile device to continue the registration process. Click the Next button on the Set up your account in app screen. You will now be presented with a QR code that will be scanned within the Microsoft Authenticator application on your phone. 

Account setup screen with instructions to add a work or school account in Microsoft Authenticator.

  1. Open the Microsoft Authenticator application on your mobile device. Tap "Allow notifications", if prompted. Followed by "Accept" or "Continue" on any privacy policy or feedback prompts:

Microsoft Authenticator screen requesting optional app usage data sharing, with Continue button.

  1. Once you have reached the “Secure your Digital Life” screen, or the “Welcome to Authenticator” screen, tap the "Add work or School Account" button, followed by "Scan QR Code". Note: If you already have non-OU accounts in Microsoft Authenticator present, press the "+" button in the upper-right corner of the screen on the application, followed by "Add work or School Account" and "Scan QR Code".

Microsoft Authenticator home screen with Add work or school account option highlighted.

Microsoft Authenticator menu with Scan a QR Code option highlighted for account setup.

4.  If you are prompted to grant access to your camera to scan for the purposes of scanning the QR code, tap "Allow"

Microsoft Authenticator camera permission prompt with “While using the app” highlighted.

5.  Use your phone to scan the QR code that appears on-screen.

Microsoft Authenticator enrollment screen showing QR code scanning for account setup.


Verifying Enrollment

You should now be prompted to verify that enrollment was successful. A notification will be sent to your phone. Tap the notification that was sent and enter the two digit number that appears on-screen:

Microsoft Authenticator verification screen prompting entry of the number shown in the app.

Microsoft Authenticator prompt requesting a number match to approve a sign-in attempt.

Microsoft Authenticator successfully added as the default sign-in method, with Done button.

If you are not receiving a push-notification on your phone from Microsoft Authenticator, you can double-check they are enabled by taking the following steps: 

  • On Apple iOS Devices: Open the "Settings" app -> Tap "Notifications" -> Scroll to the "Authenticator" application under "Notification Style" and tap on it -> Ensure "Allow Notifications" is turned on. 
  • On Android Devices: Open the "Settings" app -> Tap "Notifications" -> "App Notifications" -> Scroll to the "Authenticator" application and tap on it -> Ensure "Allow Notifications" is turned on.

Adding an Alternative Email Address

At some point, you will be prompted to add a secondary, non-Oakland University email address to your account. If you are not prompted for this email after enrolling in Microsoft Authenticator, you will be prompted to do so at a later date. This email is used in the event you need to verify your identity during a password reset.

You can use any secondary, non-Oakland University email address for this purpose. If you would like to create a new email account specifically for this, you can use the instructions below to create a new, non-Oakland University email account with Google: 

Once your secondary email address is ready, take the following steps to add it to your account: 

  1. Click the Done button if you are still on the Authenticator Added screen. 
  2. Enter your alternate email in the text field when prompted to add a secondary email, then click Next

Add an email address screen with recovery email entered and Next button highlighted.

  1. You will now receive an email from Oakland University / Microsoft with a one-time verification code. Enter the code that was sent to the alternate email into the text field:

Verification email displaying a code to confirm an Oakland University account email address.

Verify Your Email screen with code entry field for confirming a recovery email address.

After entering the one-time code and clicking "Next", you should see a verification screen indicating your alternate email address has been added. 

For answers to questions regarding Microsoft Authenticator/MFA, please see the article below:

Please reference the following article to see an overview of all other articles pertaining to Microsoft Authenticator and the new Self-Service Password Reset (SSPR) solution: 

Additional Support

Should you encounter any issues with an existing account in the Microsoft Authenticator application, or to report general issues with the application, the OU Technology Center can provide technical support. Their contact information is below: 

  • 44 Oakland Center
  • Rochester, MI 48309-4479
  • (248) 370-4357
  • Office Hours: M-F 8:00am - 5:00pm
Print Article

Related Articles (2)

This article contains links to all Knowledge Base articles pertaining to Microsoft Authenticator, and Self-Service Password Reset.
This article details the process for adding or removing a registered device from Microsoft Authenticator. It also provides instructions for changing a personal email address.