Account Access - Setting Up and Signing In with a Passkey

Set up a passkey on your iPhone, Android device, or Windows PC and sign in to SIUE Microsoft services without a password.

What Is Changing

Microsoft is retiring SMS and voice call verification for Microsoft 365 accounts, including SIUE. These older methods are vulnerable to interception, SIM-swapping, and phishing. The recommended replacement is the Microsoft Authenticator app, which works on any device and does not require Bluetooth. You can also add a passkey as an additional sign-in method on devices that support it. See Passkeys for an overview of your options.

If a phone number is your only alternate method for self-service password reset, the retirement also affects your ability to reset your password on your own. See E-ID - Changing your E-ID password for what to do before the retirement takes effect.

Timeline

  • September 1, 2026: Users who still sign in with a text message or phone call will get a prompt to register a new method at every sign-in. You can dismiss the prompt and continue using your existing method for now.
  • February 1, 2027: SMS and voice call verification will stop working. A passkey, Microsoft Authenticator, or another supported method will be required to sign in.

If you already use Microsoft Authenticator (push notifications) or a passkey, this change does not affect you. You only need to act if your primary sign-in method is a text message or phone call.

How to Check Your Current Method

  1. Go to https://mysignins.microsoft.com/security-info.
  2. Sign in with your SIUE email address, password, and current authentication method.
  3. Look under the Phone section. If you see a phone number listed for SMS or voice call verification, this change affects you.
  4. If you see Microsoft Authenticator or passkeys listed instead, you are already set.

Set Up Microsoft Authenticator

Microsoft Authenticator is the recommended sign-in method for your SIUE account. It works on every device you sign in from, does not require Bluetooth, and keeps working on public and shared computers. It is the right choice if you sign in from campus computers, kiosks, or podiums.

Step-by-step instructions for installing the app, adding your SIUE account, and approving sign-in requests are in Microsoft Authenticator - Set Up and Use.

Add a Passkey

A passkey is the natural next step after Microsoft Authenticator if your personal device supports one. It lets you sign in to SIUE Microsoft services without a password, using Face ID, Touch ID, a fingerprint, or a PIN.

Note: Passkeys rely on Bluetooth to sign in across devices, and Bluetooth is not available on many public machines, such as lab computers, kiosks, and podiums. If you sign in from shared or public computers, set up Microsoft Authenticator instead.

Choose the device you want to use for your passkey. Your phone is the most convenient option because you carry it with you. Jump to the setup section for your device:

You do not need to remove your existing phone number from your account. Once your passkey is registered, it signs you in on devices that support it, and the phone number stays as a backup until it is retired.

Set Up on iPhone

Prerequisites

  • Your device must be running a recent version of iOS that supports passkeys. Requirements vary by platform; check with ITS if you are unsure.
  • iCloud Keychain must be enabled. Go to Settings > [Your Name] > iCloud > Passwords and turn on "Sync this iPhone". On iOS 17 and earlier, this section is called Passwords and Keychain.
  • Have your SIUE e-ID, password, and current multi-factor authentication method ready.

Adding a Passkey to Your SIUE Microsoft Account

  1. On your iPhone, open Safari and go to https://mysignins.microsoft.com/security-info.
  2. Sign in with your SIUE email address, password, and current multi-factor authentication method.
  3. Select Add sign-in method.
  4. Select Passkey from the dropdown menu, then click Next.
  5. When the iOS prompt appears, select Next.
  6. Authenticate with Face ID, Touch ID, or your device passcode to save the passkey.
  7. Enter a descriptive name for your passkey (for example, "My iPhone") and click Done.

Set Up on Android

Prerequisites

  • Your device must be running a recent version of Android that supports passkeys. Requirements vary by platform; check with ITS if you are unsure.
  • A secure screen lock (PIN, pattern, fingerprint, or face unlock) must be enabled.
  • Bluetooth must be turned on if you plan to use cross-device sign-in (signing in on another device using your phone).
  • Have your SIUE e-ID, password, and current multi-factor authentication method ready.

Adding a Passkey to Your SIUE Microsoft Account

  1. On your Android device, open Google Chrome and go to https://mysignins.microsoft.com/security-info.
  2. Sign in with your SIUE email address, password, and current multi-factor authentication method.
  3. Select Add sign-in method.
  4. Select Passkey from the dropdown menu, then click Add.
  5. When the Android system prompt appears, click Continue.
  6. Authenticate with your fingerprint, face unlock, or screen lock PIN to save the passkey to Google Password Manager.
  7. Enter a descriptive name for your passkey (for example, "My Android Phone") and click Done.

Set Up on Windows

Prerequisites

  • A Windows 10 or Windows 11 PC that supports Windows Hello.
  • Windows Hello must be set up on the device with at least a PIN configured.
  • Have your SIUE E-ID, password, and current multi-factor authentication method ready.

A Note About Windows Hello at SIUE

You may see Microsoft documentation that refers to "Windows Hello" and "Windows Hello for Business" as the same thing. At SIUE, they are used differently:

  • Windows Hello (PIN, fingerprint, or facial recognition) is used to unlock your passkey when you sign in to websites. This is what this article covers, and it works on SIUE PCs.
  • Windows Hello for Business is a separate feature used to sign in to the Windows computer itself. SIUE has this feature turned off. You will continue to sign in to your Windows PC with your normal username and password.

You do not need Windows Hello for Business to use a passkey. The passkey uses Windows Hello only as a local unlock step, it does not change how you sign in to your computer.

Setting Up Windows Hello (If Not Already Configured)

To register a passkey on your PC, Windows Hello must have at least a PIN configured. This PIN is used locally on the device to unlock the passkey. It is not your SIUE password.

  1. Select Start > Settings > Accounts > Sign-in options.
  2. Under Windows Hello, select PIN and then Set up.
  3. Follow the prompts to create a PIN. If your device supports fingerprint or facial recognition, you can add those methods on this screen as well.

If you do not see the Windows Hello PIN option under Sign-in options, your PC may not support Windows Hello or the feature may be restricted by your device configuration. Contact the ITS Help Desk for assistance.

Registering a Passkey on Your Windows PC

  1. Open a web browser (Microsoft Edge or Google Chrome) and go to https://mysignins.microsoft.com/security-info.
  2. Sign in with your SIUE email address, password, and current multi-factor authentication method.
  3. Select Add sign-in method.
  4. Select Passkey from the dropdown menu, then click Add.
  5. When prompted to choose where to save your passkey, select the option for This Windows device.
  6. A Windows Security dialog will appear confirming the passkey will be stored on your Windows device. Click Continue.
  7. Verify with Windows Hello by entering your PIN, using your fingerprint, or looking at the camera for facial recognition.
  8. Enter a descriptive name for your passkey (for example, "My Campus PC") and click Done.

Signing In with Your Passkey

Once your passkey is registered, sign in with it on any SIUE Microsoft service:

  1. Go to the sign-in page for any SIUE Microsoft service, such as Blackboard, email, or Cougarnet.
  2. Enter your SIUE email address and click Next.
  3. Select Use your face, fingerprint, PIN, or security key instead (or Sign in with a passkey if prompted directly).
  4. Authenticate when your device prompts you. The exact prompt depends on your device:
  • iPhone: Face ID, Touch ID, or your device passcode.
  • Android: Fingerprint, face unlock, or screen lock PIN.
  • Windows: Windows Hello PIN, fingerprint reader, or facial recognition.

Signing In on a Different Device (Cross-Device Flow)

You can use a passkey stored on your phone to sign in on another device, such as a friend's laptop. Your passkey stays on your phone and does not transfer to the other device.

  1. On the device you want to sign in on, go to the sign-in page and enter your SIUE email address.
  2. Select Use your face, fingerprint, PIN, or security key instead (or Sign in with a passkey).
  3. A QR code appears on the screen.
  4. Open your phone's camera and point it at the QR code. Use the built-in camera, not a QR scanner app.
  5. Your phone shows a notification asking you to authenticate with your passkey.
  6. Complete the authentication on your phone with Face ID, fingerprint, or PIN.
  7. The other device finishes signing you in automatically.

Keep Bluetooth on for the cross-device flow. Your phone and the other device use Bluetooth to confirm they are near each other.

Public machines: The cross-device flow requires Bluetooth on both devices. Public machines such as lab computers, kiosks, and podiums typically do not have Bluetooth, so you cannot use a phone passkey to sign in on them. Use Microsoft Authenticator instead when signing in from these machines.

Signing In with a Security Key

If you have a hardware security key (such as a YubiKey) registered as a passkey, the process is similar:

  1. Enter your SIUE email address on the sign-in page.
  2. Select Use your face, fingerprint, PIN, or security key instead.
  3. Insert your security key into a USB port or tap it against your phone's NFC reader.
  4. Touch the key's sensor or button when prompted.
  5. You sign in.

Recommended: Register a Second Sign-In Method

Microsoft Authenticator is the recommended primary method for your SIUE account. If your device supports passkeys, add a passkey as an additional sign-in method for passwordless sign-in. Registering a second method also protects you if your phone is lost, broken, or unavailable. Without one, you would need to go through account recovery to get back in. Microsoft Authenticator on a second device, or a passkey on your computer or a hardware security key, can serve as that second method. See Managing Passkeys: New and Multiple Devices for managing passkeys across devices.

What If I Cannot Use a Passkey or Microsoft Authenticator?

If your device does not support passkeys or you cannot use the Authenticator app for another reason, see Account Access - Passkeys: Requirements and FAQ for the alternatives available at SIUE, or contact the ITS Help Desk before February 1, 2027.

Important Things to Know

  • Authenticator works on any device. Push approvals do not require Bluetooth, so they work on public and shared computers.
  • Passkeys are device-specific. A passkey stored on your iPhone does not sync to a Windows PC. If you want a passkey on multiple devices, register one on each device separately. See Managing Passkeys: New and Multiple Devices.
  • Passkeys need Bluetooth for cross-device sign-in. Public machines (labs, kiosks, podiums) often lack Bluetooth, so use Microsoft Authenticator on those devices.
  • Browser support varies. Passkeys work in most modern browsers. If you have trouble, try Microsoft Edge or Google Chrome.
  • You still need your password for some things. Passkeys replace your password for Microsoft services, but you will still need your SIUE password to sign in to campus computers. Passkeys do not change how you sign in to Windows.
  • Keep an additional sign-in method. If your phone is lost, replaced, damaged, or unavailable, an alternate method can help you regain access.

Need Additional Support?

If you have any questions or need further assistance, please contact the ITS Help Desk:

This guide aims to provide useful information, but as technology changes, interfaces or steps might vary. Please use the Comment button to let us know if anything differs from your experience. Your feedback helps us keep this information accurate. Thank you!



Keywords:
passkey, passkeys, setup, register, sign in, login, migration, SMS, text message, phone call, retirement, iPhone, iOS, Android, Windows Hello, Face ID, Touch ID, fingerprint, PIN, iCloud Keychain, Google Password Manager, cross-device, QR code, security key 
Doc ID:
163168
Owned by:
Jeff P. in Southern Illinois University Edwardsville
Created:
2026-08-06
Updated:
2026-08-13
Sites:
Southern Illinois University Edwardsville