To add a second device and TOTP (Time-based One-time Password) factor to Microsoft MFA, users can follow these general steps:
- Download and Install an Authenticator App: Users can use the Microsoft Authenticator app or any other authenticator app that supports TOTP.
- Enroll the Second Device: When prompted during the sign-in process, users can choose to set up their second device by scanning a QR code or entering a setup key provided by the application requiring MFA.
- Verify the Setup: After adding the second device, users should verify that they can receive TOTP codes from both devices.
For detailed instructions, users should refer to the Microsoft documentation on how to register for combined security registration, which allows them to manage their authentication methods and devices for both MFA and self-service password reset. This process ensures that users can easily add and manage multiple devices for MFA.
You can point users to the following resources for more information:
- Set up multifactor authentication for Microsoft 365
- Migrate to Microsoft Entra multifactor authentication and Microsoft Entra user authentication
References: