Microsoft Two-Factor Authentication Help
Sign In to Microsoft Security Settings
Open Microsoft’s official website by typing “Microsoft account” into your browser and choosing the result published by Microsoft. Sign in, open the Security tab, and select “Manage how I sign in.”
Before entering a password or code, check that the page identifies Microsoft as the site owner. Avoid links in unexpected texts, emails, ads, or pop-ups. A genuine Microsoft page will not ask you to send a verification code to another person.
These instructions cover a personal Microsoft account. If an employer or school manages the account, use its Security info page and contact the organization’s IT administrator when a setting is unavailable.
Turn On Two-Step Verification
Microsoft two factor authentication requires another proof of identity in addition to the password. Before starting, keep your phone or other verification device nearby and add more than one security method if the account permits it.
- In the account security area, select “Manage how I sign in.”
- Find Additional security and Two-step verification.
- Select “Turn on” and follow the displayed instructions.
- Choose an available verification method, such as Microsoft Authenticator, an alternate email address, or another method Microsoft offers for the account.
- Complete the test verification before leaving the page.
Options can vary by account. Microsoft is phasing out text-message verification for personal accounts, so it may not be offered. During Microsoft account two factor authentication setup, create a recovery code if that option appears and store it somewhere secure away from the device used to sign in.
Use Microsoft Authenticator
For Microsoft two factor authentication setup with the app, install Microsoft Authenticator from the official app store on the phone. In “Manage how I sign in,” choose “Add a new way to sign in or verify,” select the app option, and display the setup code. In Authenticator, tap the add symbol, choose Personal account, and scan the code. Use the manual setup choice if scanning is unavailable.
For a Microsoft two factor authentication login, enter the account name and password, then request an Authenticator notification if prompted. Open the app, check that the account and sign-in details match your attempt, enter or tap the number shown on the sign-in screen when requested, and approve. Deny any request you did not start.
If the sign-in page asks for a verification code instead, open the correct account in Authenticator and enter its current displayed code. These rotating codes can work without mobile service or internet access.
Change or Add Verification Methods
Return to “Manage how I sign in” to review the registered methods. Select “Add a new way to sign in or verify,” choose an available method, and finish its confirmation step. Confirm that the new method works before changing anything else.
Update security information before changing a phone number, email address, or device. Keep at least two usable methods when possible. Remove an old method only after testing its replacement. Do not remove every method together, because Microsoft may restrict access while security information is being replaced.
Deleting Authenticator from a phone does not necessarily remove that phone from the account. Remove the old registration in Microsoft security settings after the new device works. Generating a new recovery code invalidates the previous one.
Fix Missing Codes and Sign-In Prompts
If Microsoft two factor authentication is not working, first select “Other ways to sign in” and use another registered method. Then check the following:
- For email codes, inspect spam or junk folders and confirm that the partly hidden destination belongs to you.
- For messages, confirm that the displayed number is current, the phone has service, and messages are not being filtered. Do not make repeated requests in quick succession; an older delayed code may no longer work.
- For Authenticator prompts, unlock the app, allow notifications, turn off Do Not Disturb, and confirm that the phone has a network connection.
- Set the phone’s date and time automatically, update the app and operating system, and switch between Wi-Fi and mobile data if notifications fail.
- Check an old phone if prompts still go there. Use a displayed Authenticator code or another method when available.
Repeated verification can happen after cookies are cleared, private browsing is used, the browser blocks storage, or the sign-in comes from a new device or location. Approve only a request that matches a sign-in you started. Never share a code with someone claiming to provide support.
Recover Access to the Account
For Microsoft account two factor authentication recovery, start at the official Microsoft sign-in page and select “Other ways to sign in.” Try every method still under your control. If you previously saved a recovery code, choose the recovery-code option when Microsoft presents it and enter that code.
If you know the password but cannot use any listed method, select “I don’t have any of these” and follow Microsoft’s process for replacing security information. Read every notice about restrictions or waiting periods before confirming the change.
The standard account recovery form cannot override two-step verification when none of the registered methods is accessible. Microsoft support agents also cannot send a reset link or change protected account details. For a work or school account, ask the organization’s IT administrator to reset or re-register the allowed verification methods.
Contact Microsoft Support
For Microsoft two factor authentication support, open Microsoft’s official Support site and choose the account sign-in help area. Start the “Sign-in Helper,” enter the account identifier, and follow the result. For technical help, select “Contact Support,” describe the authentication problem, and use the channel Microsoft offers.
Do not trust phone numbers found in ads, forum posts, unsolicited messages, or unofficial directories. Avoid third-party recovery services and anyone asking for a password, approval, or verification code. Support can explain official steps, but it cannot bypass two factor authentication for a Microsoft account.