First time setup for Okta Multifactor authentication(MFA)

Summary

These instructions shows setup for Okta Multifactor authentications using Okta Verify and/or Google Authenticator

Body

This HOW-TO article will help STUDENTS to SET UP MFA.

Overview

Find instructions on the various methods for setting up MFA below.

General Instructions

Google Authenticator

Biometric Instructions

**Default process requires initial log in and setup from a computer/second device. A mobile device is then required for scanning and connecting account to the security feature. The default setup steps cannot be done from the mobile device alone. Please see "If you are only using mobile device for all steps" under the application of your choice for setting up the multifactor authentication from mobile device only. 

General Instructions - Default Process

1- Users will log in to ACC application with ACCeID and password. (Computer step)

Uploaded image


2 - An account with no selected options will be automatically prompted to set MFA for the account. (Computer Step)

Uploaded image

Student will have options for the two mobile applications. Either of these will need to be installed on their device from the Google Play/Apple Stores. (Phone Step)

3- Select Set up under the option of your choice. (Computer Step)

4- On your device, you will open the selected application. (Phone Step)

5- Select the + icon (both applications show this as the add account option)
Account type will be “Organization” (work, school or company). (Phone Step)

6- Skip the option to import account. (Phone Step)

7- The application will then ask if you have the QR code to scan. This will be displayed on the computer from setup (Phone Step)

8- Select Ready to Scan. The phone screen with switch to a camera. This step is important. The QR code must be scanned from the app. Any scan from the mobile device camera when not in the application will not connect the Okta account to the device. (Phone Step)

  • If you are only using mobile device for all steps, select option to receive setup link via email or text.
    • Click the provided link to link account to Okta Verify app

Uploaded image

9- Enable the screen lock confirmation. Security requires that the pin/pattern/password/scan that is set for security on your device is enabled for the application. 
(Apple phones require screenlock confirmation - Android allow you to skip this step)

10- Click Done. Application will not show a profile tile with a 6 digit number. For Okta Verify, either device push notification, or the number may be used. (Computer Step)


11- On the computer, click Continue or setup another option. 

Uploaded image

If push notification is not displayed on the phone, please have student check their phone notification setting. Push may need to be turned on for the Okta Verify App. Or if not being notified, opening the Okta Verify app can also trigger the notification prompt.

 

Google Authenticator Instructions

Google Authenticator follows similar set up steps. The application installation just uses a different app. The QR code is unique to the individual signing in and to the application being assigned.

1- Users will log in to ACC application with ACCeID and password. (Computer step)

Uploaded image

2- Select Set up under Google Authenticator  (Computer Step) 

Uploaded image

Uploaded image

3- Download the Google Authenticator to the device from the Google Play/Apple store (the application will request an account to use. This is for the device since it is also a Google product. It does not need to be the ACCmail account. This would be the users personal Google account on the device. It does not connect the account for the app to the Okta account for AC.) (Phone Step)

4- Select the + icon and select Scan a QR code. (Phone Step)

  • If you are only using mobile device for all steps, select Can't Scan.
    • Copy code presented on screen.
    • Open Google Authenticator
    • Select +; Enter a setup key
    • Paste code into your key field and click Add


5- The phone screen with switch to a camera. This step is important. The QR code must be scanned from the app. Any scan from the mobile device camera when not in the application will not connect the Okta account to the device (Phone Step)

A profile in the Google Authenticator will be displayed.

6- Click Next.You will be prompted to enter the code from Google Authenticator (Computer Step) 

Uploaded image

7- Get code from Google Authenticator (Phone Step) 


8- Enter code and click “Verify”  (Computer Step) 

Uploaded image

 

Biometric Instructions

Setting up Biometric option if the methods above do not work.

To maintain access to the security key that is setup from Biometric option, you will perform all setup steps from your mobile device.

Biometric will need to be set up from two ACC website URLs

1- Open your mobile device's web browser (Chrome, Safari) and go to the first URL.

2- Sign in using your ACCeID and password.

Uploaded image

3 - Select Settings from the dropdown menu.. 

Uploaded image

4- Locate Security Methods. Select Set Up next to Biometric Authenticator

Uploaded image

Uploaded image

5- Choose Device for passkey. Use "This Device"

Uploaded image

6- Your mobile device will require you unlock pin/pattern/scan ID to link the device to the passkey.

7- When logging in from the same mobile device to ACC applications, selecting Biometric will only prompt for device pin/pattern/scan ID.

8- When logging in on a computer with Biometric/passkey setup your screen will ask to sign in with your passkey.

Uploaded image

9- Click Next

10- The device will ask to temporarily turn on Bluetooth. 

Uploaded image

11- Scan the QR code displayed from your mobile device.

12- Enter your mobile device unlock pin/pattern/scan ID.

  • First setup is complete

13- Follow the same steps after selecting the second URL.

Details

Details

Article ID: 20480
Created
Wed 9/16/26 4:04 PM
Modified
Mon 9/28/26 1:13 PM