Microsoft MFA Changes

Overview

Microsoft is making changes to multi-factor authentication (MFA) to improve account security and reduce reliance on authentication methods that are more vulnerable to phishing and fraud. As part of this initiative, Microsoft-provided SMS text message and phone-call authentication methods will no longer be supported beginning February 1, 2027.

To prepare for this change, NMSU Information Technology is encouraging users to enroll in the Microsoft Authenticator app, which provides a more secure and convenient way to verify your identity when signing in.

What Is Changing

If you currently use text message (SMS) codes or phone calls to verify your identity, you will need to transition to another authentication method before February 1, 2027. More information about the retirement timeline is available on Microsoft's website.

What Do I Need to Do?

NMSU community members who use text message (SMS) codes or phone calls to verify their identity will need to enroll in the Microsoft Authenticator app.

The app allows you to securely approve sign-in requests from your mobile device and provides a faster, more reliable experience than text messages or phone calls.

Set up Microsoft Authenticator by visiting our knowledge base.

Already Using Another Authentication Method?

If you already use supported authentication methods such as:

  • Microsoft Authenticator 
  • Passkeys
  • Hardware security tokens

No action is necessary. If you are unsure about your authentication methods, you can review your authentication methods to determine whether action is necessary.

Frequently Asked Questions

Click here to find answers to common questions about Microsoft's MFA changes, authentication methods, enrollment options, and upcoming deadlines.