How to set up Multi Factor Authenticator (MFA)
Modified on: Tue, 8 Apr 2025 09:00To help protect user accounts, Multi-Factor Authentication (MFA) is a mandatory requirement for anyone wishing to access their Trust account.
What is MFA?
Multi-Factor Authentication (MFA) is an authentication method that requires a user to provide two or more forms of authentication to gain access to a resource such as an
application or online account.
-
So in a nutshell, MFA adds an extra layer of security in the ever-increasing battle to combat hackers.
How to set it up
We recommend you download the Microsoft Authenticator App to your smartphone for a more seamless experience.
If you would rather use SMS messages sent to your phone instead, select I want to set up a different method. Microsoft 365 will ask for your mobile number, then send you an SMS message containing a 6-digit code to verify your device.
📢Note : If you prefer the text option, then you do not need to follow the rest of this solution.
iPhone users go to App store
Android users go to Play store/google play
Download/Install & Open the app
📢Note: Ensure it is the Microsoft Authenticator app and not another authenticator app or advertised app.
The Microsoft Authenticator app looks like the below.
Click Next on the first screen
On the next screen , click 'Set up'
📢Note: The below Screen will appear DO NOT CLICK NEXT JUST YET.
Open Microsoft Authenticator app on your mobile device.
Android only - First screen: One tap to verify – press the arrow to go to the next page, verification codes page will appear, press the arrow to next page and then ‘get started’.
iPhone only: The below two screens MIGHT be displayed (depending on model), if so Skip them
iPhone only: Allow the notifications (this may take you to your settings to switch notifications on), then ok the gathering of non-personal data and Select Skip to sign in without a password.
The next screen will be ‘Add your first account’
Either click on the plus sign or add account (depending on device)
iPhone
Android
Select ‘Work or school account
📢Note: Some devices will ask you to Allow the camera - you need to accept this by clicking OK/Allow in order to scan the code generated on the PC
iPhone
Android
Hold your phone up to the PC with the back of your phone/camera facing the PC, it will automatically detect the QR Code and scan it for you.
📢Note: If this does not work enter the QR code and URL manually (details can be found underneath the code on your PC screen)
Once the code has been scanned (or entered manually) and activated, a 6-digit code will appear on your mobile device.
When this appears click Next on your PC
Click Next again on your PC
Once activated on the PC, your mobile phone will ask you to APPROVE OR DENY
This must be APPROVED
📢Note: the code on the mobile device will change every 30 seconds, this is fine.
⚠️Warning : You should never approve if this appears randomly while you are not using Office 365 as someone else may be trying to access your account.
The below screen will appear on your PC with an App password
📸Take a photo of the App password before clicking finished
📢Note: The app password may be requested on the phone when using apps but has nothing to do with your normal password.
Click Finished
✅Office 365 will now be available.
📢Note: When accessing outlook, if security questions (for password account recovery) have not previously been set up you will have to do this before being able to access the account by selecting two of the three options :
➡️Email
➡️Phone
➡️Security questions
If you select email or phone, please ensure you have reception as some parts of the Trust have poor service. You will be sent a verification code to your mobile which needs to be entered on the PC.
Potential Issues
Please ensure you follow all steps on the Mobile App and simultaneously on the PC, if you do not you may need to delete the account added to the mobile and start again from ‘add your first account’.
📢Note: Due to poor reception issues in the Trust, sometimes, the connection between the phone and PC fails and you do not have an option to Deny or Approve access. If this occurs, follow the below steps to remove the email account and start again from ‘Add your first account’.
How to delete an email account:
1️⃣Open the Microsoft authenticator app
2️⃣Go to the three dots or lines (usually top left of the screen)
3️⃣Edit account
4️⃣Delete the Trust email account
5️⃣This will take you back to step 6 – Add your first account
6️⃣Do the process again from there