Can you add an Apple Passkey security key to a non-personal Microsoft account?

Christopher Malone 26 Reputation points
2022-11-24T13:13:58.53+00:00

Hi,

I’m trying to add an Apple Passkey security key to my business Microsoft account (I have setup all the settings in Azure Active Directory, etc.) but every time I go to set it up, I get to the part where I have to name the key, and whenever I press “Next” which will save the key to the account, it just says it can’t be done and to try again. I’ve gone through all the help articles, and I know it’s not on the list of supported security keys, however, it works when I’m adding it to other tenants such as all of my personal Microsoft accounts, just not this particular tenant.

Is this just a temporary limitation of non-personal accounts, or is there something in the AAD settings I’m missing?

I’ve been troubleshooting this for some time now with multiple Microsoft Support agents, trying everything we can all think of to no avail.

Thanks.

Microsoft Authenticator
Microsoft Authenticator
A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation.
7,217 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,421 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
22,235 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. 2022-12-01T04:35:17.887+00:00

    Hello @Christopher Malone and thanks for reaching out. Apple Passkey (multi-device passkeys) is not yet supported in Azure AD. It's very possible that we will support it in a future, however no plans have been announced yet. In the meantime, for MacOS, we recommend using single-device passkeys, aka FIDO2 security keys, as a phish resistant auth method.

    Let us know if you need additional assistance. If the answer was helpful, please accept it and complete the quality survey so that others can find a solution.

    2 people found this answer helpful.

  2. nleva 126 Reputation points
    2024-07-09T19:06:54.82+00:00

    Very weird that we can't add the apple passkey directly and it fails out when naming the passkey. However, it's now possible to add an apple or android device as a passkey, but strangely the passkey must be stored in the Microsoft authenticator app instead of the iphone itself. Strange design decision, but at least it works now https://learn.microsoft.com/en-us/entra/identity/authentication/how-to-enable-authenticator-passkey#enable-passkeys-in-authenticator-in-the-admin-center

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.