Body
Summary
If you currently use text message (SMS) or phone call verification for Microsoft 365 sign-ins, you must switch to a phishing-resistant authentication method by November 20, 2026.
Winona State University recommends using the Microsoft Authenticator app. Other phishing-resistant authentication methods, such as FIDO2 security keys, may also be used.
Information Applies To
Faculty, Staff, Current Students, New Students, Alumni, Retirees
What is Changing and Why?
Microsoft is retiring its SMS (text message) and voice call authentication services on February 1, 2027.
To prepare for this change, Winona State University is asking all Microsoft 365 users who currently rely on text messages or phone calls for MFA to configure the Microsoft Authenticator app on their mobile device by November 20, 2026.
Who Needs to Take Action?
You need to take action if your current Microsoft 365 multi-factor authentication (MFA) method is:
- A text message (SMS)
- A phone call (voice verification)
To continue accessing your Microsoft 365 account without interruption, add the Microsoft Authenticator app and set it as your default sign-in method by November 20, 2026.
Note: No action is required if you already use the Microsoft Authenticator app for Microsoft 365 MFA and can successfully approve sign-in requests using the app.
Update your Security Information
To review or update your MFA settings:
- Open the Microsoft Security Info page.
-
Sign in to Microsoft online using your Minnesota State Microsoft account.
Username
Students: StarID@go.minnstate.edu
Employees: StarID@minnstate.edu
Password
Your StarID password
Add a New Sign-in Method
You will need both your mobile device and a computer to complete the setup.
On your computer:
- Select + Add sign-in method

- Select Microsoft Authenticator from the list.

- If you don't already have the Microsoft Authenticator App installed on your mobile device, download it from one of the following app stores and select the Next button on the computer:

- Select the Next button on your computer.

On your mobile device:
-
Open the Microsoft Authenticator app. If prompted, select Set up your account and allow notifications.
-
If prompted to Sign in with Microsoft, select Skip in the upper-right corner.
- At the Authenticator home screen, select "Add Account" at the bottom or the "+" symbol at the top right.
-
Select Work or school account, then select Scan QR code.

- Select Allow if prompted "Authenticator" Would Like to Access the Camera.
- Scan the QR code on the screen with your mobile device.

On your computer:
- After scanning the QR code, select Next.
-
The next page is titled Let's try it out and displays a two-digit number.
- A notification will be sent to your mobile device.

On your mobile device
-
Enter the two-digit number displayed on your computer and select Yes.
-
You will be prompted to verify your identity using Face ID, fingerprint authentication, or your device passcode.
-
You have successfully added the Microsoft Authenticator app as a sign-in method.
Change Your Default Sign-In Method
To change your default sign-in method:
-
Select Change next to Default sign-in method.

- Choose App based authentication - notification from the list and select the Confirm button.

-
Microsoft Authenticator will now send approval notifications to your mobile device when you sign in.
Can't get signed in to Microsoft 365?
If you are unable to access your Microsoft 365 account because you cannot complete MFA verification, contact WSU Tech Support for assistance with resetting your authentication methods.
Visit
- Somsen Hall 207 (Winona Campus)
- Coffman Center 122 (Rochester Campus)
Call
Learn More
- Contact WSU Tech Support for additional assistance or questions.