Multi-Factor Authentication (MFA)

With technological advancements, passwords are becoming easier and easier to crack or steal these days. A password alone is no longer sufficient as a security measure to protect access to sensitive data, which is why another step is needed to verify your identity: an additional factor. This has long been standard practice in online banking, for example through SMS codes or confirmation within banking apps—the additional factor here is possession of the phone number or the device on which the app is installed. The term “two-factor authentication” (2FA) is often used instead of multi-factor authentication (MFA).

Your MUKaccount will also require an additional factor in the future; we recommend using an authenticator app on your smartphone. To set this up, it’s helpful to have a second device on hand, such as a personal computer or one of the public computer stations at MUK.

 

Setup Instructions

  1. Install an authenticator app on your smartphone — MUK-IT recommends Microsoft Authenticator (iOS, Android) as the default option, as this is also supported by our IT service provider, WH Digital Services (WHDS). However, it also works with third-party apps (e.g. 2FAS, Proton, Google Authenticator, etc.). Third-party apps are not supported by MUK-IT or WHDS, however.
  2. On your second device, go to myaccount.microsoft.com and sign in with your MUKaccount
  3. In the sidebar ≡, click on My Account > Security information, then click on + Add a sign-in method
  4. Select the Microsoft Authenticator method (even if you wish to use a different authenticator; to do so, you can click Set up a different app for authentication in the following window)
  5. Click Next until a QR code is displayed
  6. Open the Authenticator app on your smartphone and add an additional account via +
  7. In Microsoft Authenticator: select Work or school account
  8. Scan the QR code displayed on the second device. (If you only have one device, you can manually enter the necessary details here by clicking Can’t scan the QR code?)
  9. A number will now be displayed on one device as confirmation; you must enter this number on the other device. The setup is then complete.



Further information and troubleshooting

You will continue to log in as normal using your username and password. In certain circumstances (e.g. when accessing the service from a new device), you will be asked to confirm your access via the Authenticator app you have set up.

If the Microsoft Authenticator app freezes whilst you are trying to confirm a login, you can click I can’t use my Microsoft Authenticator app right now in the login window (where the number is displayed), and then click Use a verification code. You can obtain the verification code by restarting the Authenticator app and clicking on your account; a 6-digit one-time password will then be displayed there.

To avoid being locked out if you lose your smartphone because you no longer have access to the Authenticator app, there are two options:

  • Export Authenticator data: Most Authenticator apps (but not Microsoft Authenticator) offer the option to export the stored account information as a file. This file can be stored in a secure location and, in an emergency, imported into a new app or onto a new smartphone.
  • If you are unable to log in because you no longer have access to any of the factors you have set up, request a reset of the MFA for your MUKaccount at helpdesk@muk.ac.at an.

Contact IT-Management

MUK-Helpdesk
+43 1 512 77 47-277
helpdesk@muk.ac.at

Mario Löchler (Supervision)
Phone +43 1 512 77 47-270
Mobile +43 664 606 47 270
m.loechler@muk.ac.at

Elias Bäuml
Phone +43 1 5127747 271
Mobile +43 664 606 47 271
e.baeuml@muk.ac.at