---
title: "Set Up Duo MFA for Microsoft Sign-In"
canonical: "https://tech.calpoly.edu/space/CPKB/3627253817/Set%20Up%20Duo%20MFA%20for%20Microsoft%20Sign-In"
format: markdown
---
## **Why am I seeing this? **

If you haven’t registered Duo MFA for Microsoft, you’ll be guided through this one-time setup.

## What happens during setup?

| Microsoft will guide you through adding Duo MFA. >>> | You will be redirected to Duo to verify your identity. >>> | Microsoft will then save Duo MFA for your account. |
| --- | --- | --- |

<span style="color: #0747a6">*Future sign-ins will go directly to Duo for verification.*</span>  


> ⚠️ **Before you begin**
> ⚠️ 
> ⚠️ - Have your [Duo-enrolled ](https://calpoly.atlassian.net/wiki/spaces/CPKB/pages/3539066)device available.
> ⚠️ - Use a modern browser (Edge, Safari, Chrome, Firefox) and allow redirects or pop-up windows if prompted.


> Macro (rw-ui-steps-macro)
> 
> > Macro (rw-step)
> 
> ## Start the security setup
> 
> After signing in to a Microsoft app, you may see **Let’s keep your account secure**. Click **Next**.  
> 
> 
> ![Screen 1 Start the security setup](media://45432256-e499-4da1-a6ef-c5bd02dad3d6)
> 
> 
> > Macro (rw-step)
> 
> ## Confirm Duo MFA as the sign-in method
> 
> Microsoft explains that Duo MFA will be used and that you will be taken to another page. Click **Next**.
> 
> 
> ![Screen 2 Confirm Duo MFA as the sign-in method](media://f5f9495b-bd29-4ebc-bdc4-d2d3fd454d1e)
> 
> 
> > Macro (rw-step)
> 
> ## Continue to Duo
> 
> On the Verify your identity page, click **Approve with Duo MFA**.   
> <span style="color: #0747a6">*You will be redirected to Duo.*</span>
> 
> 
> ![Screen 3 Continue to Duo](media://b8d27ad2-9c8c-46e7-be32-fdf628696de9)
> 
> 
>  
> 
> > Macro (rw-step)
> 
> ## Complete Duo verification
> 
> Approve the request using your available Duo method.   
> <span style="color: #0747a6">*Microsoft displays *</span><span style="color: #0747a6">***Adding your sign in method***</span><span style="color: #0747a6">* while it finishes the registration.*</span>
> 
> 
> ![Screen 4 Complete Duo verification](media://9c9f1848-cc74-4d34-beff-7f9b89937ae6)
> 
> 
> > Macro (rw-step)
> 
> ## Confirm successful registration
> 
> When **Sign-in method added** appears, click **Done**.   
> <span style="color: #0747a6">*Duo MFA is now registered as an external authentication method.*</span>
> 
> 
> ![Screen 5 Confirm successful registration](media://8ea3c858-a507-41c6-bcd2-cd05fe18c476)
> 
> 
> > Macro (rw-step)
> 
> ## Return to your Microsoft sign-in
> 
> You may be returned to the Microsoft account picker or the application you were opening. **Select your account (School/Work) **if prompted and continue.
> 
> 
> ![Screen 6 Return to your Microsoft sign-in](media://baf10a6b-9337-488a-9521-dcececf41a9e)
> 
> <span style="color: #0747a6">*Initial registration is now complete!*</span>

## After registration 

- Future Multi-Factor Authentication (MFA) prompts will go to Duo without repeating the full setup flow.
- This registration adds Duo as the Microsoft external MFA method; it does not replace or re-enroll your Duo device.

## Troubleshooting

|  |  |
| --- | --- |
| **What you see** | **What to do** |
| No Duo prompt appears | System Administrator needs to confirm that the account is in scope for the Entra External Authentication Method policy and that MFA is being required for the application. |
| Duo says no device is available | Contact the Service Desk or use the approved Duo device-enrollment process. |
| The page loops or stalls | Close the browser, open a private/incognito window, sign in again, and allow redirects. |
| You changed or replaced your phone | [Update the device in Duo ](https://calpoly.atlassian.net/wiki/spaces/CPKB/pages/3637371)using the approved support or self-service process. |
| You cannot complete sign-in | Contact the Service Desk and provide the time of the attempt, the application name, and a screenshot of the error. |


> ✅ **Security reminder  **Approve Duo requests only when you are actively signing in. Deny unexpected requests and report suspicious prompts through your organization’s security process.