Secure Account with Okta 2-Factor Authentication

Summary

This provides overview on how to setup Duo two-factor authentication for extra security when logging into a university affiliated tool or system.

Body

Problem/Question

How can I secure my account with Okta Multi-Factor Authentication (MFA)?


Overview

The University of Michigan uses Okta Multi-Factor Authentication (MFA) to provide an additional layer of security for your U-M account. MFA helps protect your account by requiring a second form of verification in addition to your password.

Users are strongly encouraged to enroll in Okta Verify as their primary authentication method and configure at least one additional authentication factor as a backup.


Solution

If you are a new U-M account holder or have not yet enrolled in Okta, follow the enrollment instructions:

Okta: Enroll New Uniqname Accounts

Set Up Okta Verify

Okta Verify is the recommended authentication method and provides secure push notifications and verification codes through a mobile device.

Getting Started With Okta: Enroll With the Okta Verify App

Available Authentication Methods

Okta supports multiple authentication factors to meet different user needs. Users should enroll in a primary factor and at least one backup factor.

Available options include:

  • Okta Verify App (Recommended)
    • Push Notifications
    • One-Time Verification Codes
  • Security Keys
    • FIDO2/WebAuthn compatible hardware security keys
  • Hardware Security Tokens
    • Available for purchase through the U-M Tech Shop
    • .umich.edu/accessories/security-tokens.html" target="_blank" rel="noopener noreferrer">Security Tokens - U-M Tech Shop
  • Additional approved authentication factors
    • May vary based on account eligibility and available Okta enrollment options

Recommended Practice

Most users find Okta Verify push notifications to be the most convenient and secure authentication method. We recommend configuring at least one backup factor to ensure continued access to your account if your primary device is unavailable.


For additional information, check these categories in the Knowledge Base:

Staff & Faculty Uniqnames and Access

Student Uniqnames


Still Need assistance? See the following related services:

UMICH Login Password Reset

Details

Details

Article ID: 57913
Created
Fri 7/20/18 3:56 PM
Modified
Thu 7/30/26 2:11 PM

Related Articles

Related Articles (1)

Once access has been approved to the Ellucian Banner application, it will be necessary to do some initial setup steps.  You will be provided with an Oracle Password.  The instructions below will assist with initial login, and resetting your Oracle Password.