Start Here
MFLEX requires at least two different authentication methods so you can sign in securely and recover access if one method is unavailable.
Microsoft Authenticator notification
Fastest option for most users. You receive a prompt on your phone and tap Approve.
Authenticator code or phone
Use a six-digit app code, SMS text, or voice call when push notification is not available.
Password reset protection
Two registered methods help support Self-Service Password Reset and reduce calls to IT.
Recommended Sign-In Methods
Use Microsoft Authenticator as your primary method and add at least one backup method.
| Method | How it works | MFLEX recommendation |
|---|---|---|
| Mobile app notification | Receive a prompt in Microsoft Authenticator and approve it on your phone. | Primary Best default for everyday sign-in. |
| Mobile app code | Enter the six-digit code shown in Microsoft Authenticator. | Backup Useful when push notification is delayed. |
| Authentication phone | Receive an SMS text message or automated voice call. | Secondary Required backup for many users. |
| Office phone | Receive an automated call to your desk phone, where available. | Backup Use only if approved and practical for your role. |
New User MFA Activation
Follow these steps if you are registering MFA for the first time or see "More information required" at sign-in.
-
Open the Microsoft MFA setup page.
On your computer, go to aka.ms/setupmfa. Only enter your credentials on Microsoft-owned pages such as microsoft.com, microsoftonline.com, or aka.ms.
-
Sign in with your MFLEX account.
Enter your full MFLEX email address and current network password. If the "More information required" prompt appears, select Next.
-
Install Microsoft Authenticator on your phone.
For a company-managed phone, enroll the device in Company Portal first and install Authenticator from Company Portal when available. For an unmanaged personal phone, install Microsoft Authenticator from the Apple App Store or Google Play Store.
-
Add your work or school account.
Open Authenticator, tap the plus sign or Add account, choose Work or school account, then choose Scan a QR code.
-
Scan the QR code on your computer.
On the setup page, choose Microsoft Authenticator or Mobile app and continue until the QR code appears. Scan it with your phone, then select Next on the computer.
-
Approve the test notification.
Your phone should receive a test prompt. Tap Approve. If prompted for a number, enter the number shown on the computer screen.
-
Add a required backup method.
Add a mobile phone, office phone, or another method allowed by MFLEX policy. This helps you recover access if you lose your phone.
-
Sign out and test.
Sign out of Microsoft 365, sign back in, and confirm you can approve the MFA request or use your backup method.
Add or Manage MFA Methods
Use Security Info any time you need to add a second method, update a phone number, remove an old device, or change your default sign-in method.
-
Open Security Info.
Go to mysignins.microsoft.com/security-info and sign in with your MFLEX Microsoft 365 account.
-
Review current sign-in methods.
Confirm your phone numbers, Authenticator entries, and other methods are current. Remove old methods only after a new method works.
-
Add a new method.
Select Add sign-in method, choose Microsoft Authenticator, Phone, Office phone, Security key, or another method allowed by MFLEX, and follow the prompts.
-
Set your default method.
Use the Default sign-in method control to choose your preferred MFA prompt, such as Microsoft Authenticator notification.
-
Test the change.
Sign out and sign back in to Microsoft 365. Confirm the new method works before deleting any old device or phone number.
Move Authenticator to a New Phone
Use this before replacing, wiping, or trading in your old phone.
iPhone to iPhone
- On the old iPhone, confirm iCloud Drive, iCloud Keychain, iCloud Backup, and Authenticator under Saved to iCloud are enabled.
- Open Authenticator on the old iPhone at least once before switching phones.
- Enroll the new iPhone in Company Portal if it is MFLEX-managed.
- Install Authenticator from Company Portal when available.
- Open Authenticator and select Restore from backup or Begin recovery before adding accounts manually.
- Sign in to each restored work account when prompted to complete recovery.
Android to Android
- On the old Android phone, open Authenticator, go to Settings, and turn on Cloud Backup.
- Confirm the personal Microsoft account used as the recovery account.
- Enroll the new Android phone in Company Portal and complete Work Profile setup if prompted.
- Install Authenticator from Company Portal when available.
- Open Authenticator and select Restore from backup or Begin recovery before adding accounts manually.
- Sign in with the same personal Microsoft recovery account used for the backup.
After Restore: Re-register and Verify
Restoring the account list does not always make the new phone ready to approve sign-ins.
| Account type | What restores | What to do next |
|---|---|---|
| MFLEX work or school account | Usually only the account name restores. | Tap the account in Authenticator and follow Sign in, Action required, or Re-register prompts. Use your MFLEX credentials and another available verification method if requested. |
| Personal Microsoft account | One-time password codes may restore. Passwordless sign-in may require another sign-in. | Open the account in Authenticator and complete any sign-in or verification prompt. |
| Third-party codes such as Concur, Google, or Facebook | Time-based one-time password codes usually restore on the same platform. | Test important services by signing in and confirming the six-digit code is accepted. |
Final Checklist
Complete these checks before deleting an old method or wiping the old phone.
Confirm access
- Sign in to Microsoft 365 from a computer.
- Approve an Authenticator notification from the new phone.
- Open Outlook and Teams on the phone.
- Test any business apps that use Authenticator codes.
Clean up safely
- Confirm at least two active MFA methods remain on your account.
- Remove old phone entries only after the new method works.
- Contact the Service Desk if any approval or QR code step fails.
Troubleshooting
Use these fixes for the most common MFA setup and migration issues.
I see "More information required".
Select Next and complete the MFA registration steps. This prompt means your account must register security information before continuing.
I do not see "Restore from backup" or "Begin recovery".
The recovery link appears before accounts are added. Remove or sign out of accounts already added to Authenticator, or reinstall Authenticator, then open it and choose the recovery link first.
Authenticator says "Action required" or "Sign in to restore your account".
Tap the affected account in Authenticator and complete the sign-in prompt. Work and school accounts often need this because only the account name is restored.
I cannot scan the QR code.
On the computer setup page, choose the option for not being able to scan the image, then enter the code manually in Authenticator. Also confirm the app has camera permission.
I no longer have access to my old phone.
Contact the MFLEX Service Desk. Ask for help with MFA reset, Temporary Access Pass, or another approved recovery option. Your password alone may not be enough to register a new authenticator.
I cannot manage my MFA methods.
Your account may be restricted by policy, or you may not have enough working methods to verify your identity. Contact the MFLEX Service Desk for assistance.