Account Access - Understanding Your SIUE Sign-In Options (Microsoft Authentication Changes)

Microsoft is retiring text message (SMS) and voice call verification for all Microsoft 365 accounts, including SIUE. Use this page to check your current sign-in status, understand your options, and find the right setup guide for your situation.

Microsoft is retiring text message (SMS) and voice call verification for all Microsoft 365 accounts. This is a Microsoft requirement, not an SIUE policy change. Starting September 1, 2026, you will be prompted to update your sign-in method at every login. SMS and voice verification stop working entirely on February 1, 2027. 

Select the description below that matches your current situation to see your next step. If you are not sure what sign-in methods you have registered, see Check Your Current Sign-In Methods first.

I already have Microsoft Authenticator and a passkey or FIDO2 security key registered.

Your account is ready. No further action is required. To confirm, go to Check Your Current Sign-In Methods and verify that both appear on your Security Info page. If they are both listed, you are finished.

I already have Microsoft Authenticator, but I have not registered a passkey or FIDO2 security key.

You are partway there. Microsoft Authenticator handles your daily sign-in, but Microsoft now requires a passkey or FIDO2 security key to also be registered on your account by February 1, 2027. Go directly to the passkey registration guide — you can skip the Authenticator installation steps entirely:

I do not have Microsoft Authenticator and I do not have a passkey.

Start with Authenticator first, then add a passkey. Both are required by February 1, 2027.

I do not own a smartphone, or my device does not support passkeys.

A FIDO2 hardware security key is the required alternative. It plugs into any computer's USB port and does not require a phone.

I cannot use any of these options.

Contact the ITS Help Desk before February 1, 2027. Staff will review your situation, including any accessibility needs, and identify the method that works for you. Call (618) 650-5500 or visit Lovejoy Library Room 0005.

Check Your Current Sign-In Methods

If you are not sure what sign-in methods are registered on your account, check the Microsoft Security Info page. This page shows everything currently registered.

  1. Open a web browser and go to https://mysignins.microsoft.com/security-info.
  2. Sign in with your SIUE email address, password, and your current verification method.
  3. Review the methods listed on the page.

Your account is ready if your Security Info page shows both of the following:

  • Microsoft Authenticator — listed as a registered method.
  • A passkey or FIDO2 security key — listed under passkeys or sign-in methods. It may show the name of the device or key you registered (for example, "My iPhone" or "YubiKey").

If both are not listed, return to Where Do You Need to Go? and follow the path that matches your situation.

Password reset note: If a phone number is your only alternate method for self-service password reset, this change also affects your ability to reset your password without contacting the Help Desk. See E-ID - Changing your E-ID Password to add a new alternate reset method while you still have access.

Key Terms

Microsoft Authenticator

Microsoft Authenticator is the recommended sign-in method for most SIUE users. After you enter your SIUE password, you approve a push notification in the app on your phone. The app shows a two-digit number that must match the number on your sign-in screen, select Approve to complete the sign-in. The app also generates one-time verification codes you can use when your phone has no internet connection.

Authenticator works on any device, does not require Bluetooth, and works on campus lab computers, shared machines, and any situation where a passkey cannot be used. Many users already have it installed. Note that Authenticator alone does not satisfy the February 1, 2027 phishing-resistant registration requirement. A passkey or FIDO2 security key must also be registered.

Passkey

A passkey is a sign-in method that lets you access your SIUE Microsoft account without entering a password. Instead of typing a password and waiting for a verification code, you verify your identity using the same method you use to unlock your device: facial recognition (Face ID), a fingerprint (Touch ID), a secure device PIN, or a physical security key. Passkeys are stored on your device or in a password manager and are tied to the specific service they were created for. A fake sign-in page cannot steal a passkey the way it can steal a typed password.

Passkeys are stored per device. On iPhone they live in iCloud Keychain, on Android in Google Password Manager, and on Windows through Windows Hello. A passkey registered on your iPhone does not automatically appear on your Windows PC and does not move between different platforms.

Note for campus computer users: Cross-device sign-in (using your phone passkey to sign in on a different computer) requires Bluetooth on both devices. Most campus lab computers and classroom podiums do not have Bluetooth, so this method will not work on them. Use Microsoft Authenticator instead when signing in from shared or public machines.

FIDO2 / FIDO2 Security Key

FIDO2 is the technical standard that defines how passkeys and hardware security keys work across different devices and services. A FIDO2 security key is a small physical device, such as a YubiKey or GoTrust Idem Key, that stores a passkey on the hardware itself. You plug it into a USB port or tap it against an NFC reader to sign in. Because the passkey lives on the key and not on your phone or computer, it works on any device you plug it into. This makes it a practical option for users without a smartphone and users whose devices do not support passkeys.

Limitation: FIDO2 security keys cannot be used for self-service password reset. If a security key is your only registered sign-in method, you will need to contact the ITS Help Desk to reset your password. ITS recommends also keeping Microsoft Authenticator registered to avoid this situation.

Phishing-Resistant Authentication

Phishing-resistant authentication describes sign-in methods that cannot be intercepted or stolen through fake sign-in pages, SIM-swapping, or social engineering. Passkeys and FIDO2 security keys meet this standard because the credential is tied to the specific website or service it was registered for. A fake version of the sign-in page cannot trigger it. SMS verification codes and passwords are not phishing-resistant because they can be typed into a fraudulent page or intercepted in transit.

Windows Hello and Windows Hello for Business

Windows Hello is the system Windows uses to unlock your computer or verify your identity using a PIN, fingerprint, or facial recognition. When you register a passkey on a Windows PC, Windows Hello is what prompts you to verify with your PIN or biometrics before the passkey is used.

Windows Hello for Business is a separate, enterprise-managed feature that allows Windows Hello to serve as the sign-in method for the computer itself. SIUE has Windows Hello for Business turned off. This means you continue to sign in to your Windows PC with your normal SIUE username and password. A passkey registered on your PC uses Windows Hello only as a local unlock step. It does not change how you sign in to Windows.

Need Additional Support?

If you have any questions or need further assistance, please contact the ITS Help Desk:

This guide aims to provide useful information, but as technology changes, interfaces or steps might vary. Please use the Comment button to let us know if anything differs from your experience. Your feedback helps us keep this information accurate. Thank you!



Keywords:
authentication changes, MFA, sign-in method, passkey, authenticator, SMS retirement, Microsoft 365 login, SIUE account security, phishing-resistant, text message verification, two-factor authentication, multi-factor authentication, security info, FIDO2, security key, authentication, sign in, login, password 
Doc ID:
164598
Owned by:
Jeff P. in Southern Illinois University Edwardsville
Created:
2026-10-02
Updated:
2026-10-06
Sites:
Southern Illinois University Edwardsville